COLDRIVER using new malware to steal from Western targets — Google
By: cryptosheadlines|2025/05/08 03:30:02
0
Share
Airdrop Is Live CaryptosHeadlines Media Has Launched Its Native Token CHT. Airdrop Is Live For Everyone, Claim Instant 5000 CHT Tokens Worth Of $50 USDT. Join the Airdrop at the official website, CryptosHeadlinesToken.com Threat group COLDRIVER is using new malware to steal documents from Western targets, according to a May 7 report from Google Threat Intelligence. The malware, called LOSTKEYS, shows the evolution of the group from credential phishing to more sophisticated attacks.According to the Google report, the new malware is installed through four steps. The process involves a “lure website” with a fake CAPTCHA, a PowerShell script downloaded to the user’s clipboard, some device evasion, and retrieval of the final payload. Lastly, the malware is installed.LOSTKEYS payload delivery. Source: GoogleLOSTKEYS is capable of stealing files from extensions and directories. It can also send system information and running processes back to COLDRIVER. The address from which the parts of the attack come is “165.227.148[.]68” according to Google.The company says it has already taken steps to mitigate any damage the LOSTKEYS malware will cause, including adding the malicious websites to the company’s “Safe Browsing” feature.According to Google, COLDRIVER is a Russian-backed threat group that typically engages in phishing attempts at high-profile Western targets, such as former diplomats, and journalists. In January 2024, it started an attack with a malware called “Spica,” which can execute arbitrary shell commands and download or upload software.Related: Crypto drainers now sold as easy-to-use malware at IT industry fairsCrypto hack losses hit all-time high in 2025Crypto hacks have surged in 2025, with total losses reaching $2 billion in the first quarter alone — exceeding all losses recorded in 2024. According to a report by crypto cybersecurity firm Hacken, operational flaws and weak access controls remain key vulnerabilities — even among major centralized and decentralized players. Attackers are also increasingly using social engineering tactics to gain victims’ trust.Contributing to last quarter’s losses was the $1.5 billion hack of cryptocurrency exchange Bybit. The February attack was reportedly orchestrated by the Lazarus Group.Magazine: Lazarus Group’s favorite exploit revealed — Crypto hacks analysisSource link
You may also like

RootData: February 2026 Cryptocurrency Exchange Transparency Research Report
This month's cumulative spot trading volume on cryptocurrency exchanges has decreased slightly by 4.7% compared to January, which is the result of multiple factors including market conditions, the macro environment, and the Spring Festival holiday in Chinese-speaking regions.

「One and Done SEA」, so OpenSea chooses to wait a little longer
It's already Q1 2026, and we're still waiting for OpenSea to launch its token.

Ray Dalio: The Resolution of the US-Iran Conflict Is In the Strait of Hormuz
In war, the ability to endure pain is often more important than the ability to inflict pain.

In just 70 days, Polymarket easily raked in tens of millions in fees
The money printer is running, and the future ceiling only depends on two main variables.

Matrixdock is launching the Silver Token XAGm, built on the FRS standard as an on-chain silver-backed asset.
In the future, Matrixdock will continue to expand to include more high-quality real-world assets, driving the development of a more transparent and robust on-chain reserve asset system.

a16z: The Hardest Enterprise Software, and the Greatest Opportunity in AI
The world will continue to run on SAP, but AI will reshape it

Polymarket Market-Making Bible: Pricing Spread Formula
This article presents a comprehensive market-making pricing framework that will elevate you from "guesstimate pricing spread" to "formula-based pricing spread."

Ray Dalio: If the United States loses Hormuz, it will lose more than just a war
In war, who can endure pain better is often more important than who can inflict pain better.
How to Earn Up to 40% Rebates on Crypto Futures Trading (WEEX Trade to Earn IV Guide)
WEEX Trade to Earn IV lets traders earn up to 40% fee rebates in real time through a tiered miner system tied to trading activity. With additional boosts from referrals, it offers a more reliable alternative to airdrops as the crypto market gains momentum.

NVIDIA Plays Trillion-Dollar Chess Game | Rewire News Morning Edition
DGX Station, a desktop workstation capable of running trillion-parameter models

Real-time Update | NVIDIA GTC 2026 Conference Highlights Galore
The most anticipated annual event in the AI field, NVIDIA's GTC 2026 Conference, kicked off today in San Jose, California, USA.

People Behind Pokémon Go: Started with CIA's Money, Now Mapping the World for the Military AI
The security of data depends on whose hands it ends up in.

Huang Renxun GTC Speech Full Text: By 2027, Market Demand Will Exceed $1 Trillion; Everyone Should Develop an OpenClaw Strategy
The underlying business logic driving future growth will be the "Tokenomics of a Platform Factory."

Stratechery Debunks the AI Bubble Myth: What Should We Do with AI?
LLM Third Normal Form Jump drives the Agent from Tool to Execution System, current AI investment is closer to demand-driven rather than hype

Three Charts to Watch at NVIDIA's GTC: Cheaper Compute, Spend More
Mining Cost Down 94%, Capex Up 170%

BTC Eight Green Candles Reach $76K, What Is the Logic Behind Outperforming Gold in the Midst of Battle?
War Cooling Off, Oil Pullback, Stock Market Rebound: Where Is Bitcoin Headed This Time?

Morning Report | Strategy invested $1.57 billion last week to increase its holdings by 22,337 bitcoins; Abra plans to go public through a SPAC merger; Metaplanet aims to raise approximately $765 million to increase its bitcoin holdings
Overview of Important Market Events on March 16

CB Insights: Nine Predictions for the Fintech Sector in 2026, with Asset Tokenization Already Becoming a Trend
AI agents initiate autonomous trading, crypto giants directly challenge traditional banks: an article revealing 9 disruptive predictions that will reshape the financial landscape in 2026.
RootData: February 2026 Cryptocurrency Exchange Transparency Research Report
This month's cumulative spot trading volume on cryptocurrency exchanges has decreased slightly by 4.7% compared to January, which is the result of multiple factors including market conditions, the macro environment, and the Spring Festival holiday in Chinese-speaking regions.
「One and Done SEA」, so OpenSea chooses to wait a little longer
It's already Q1 2026, and we're still waiting for OpenSea to launch its token.
Ray Dalio: The Resolution of the US-Iran Conflict Is In the Strait of Hormuz
In war, the ability to endure pain is often more important than the ability to inflict pain.
In just 70 days, Polymarket easily raked in tens of millions in fees
The money printer is running, and the future ceiling only depends on two main variables.
Matrixdock is launching the Silver Token XAGm, built on the FRS standard as an on-chain silver-backed asset.
In the future, Matrixdock will continue to expand to include more high-quality real-world assets, driving the development of a more transparent and robust on-chain reserve asset system.
a16z: The Hardest Enterprise Software, and the Greatest Opportunity in AI
The world will continue to run on SAP, but AI will reshape it