Kaspersky discovers cryptocurrency Trojan

Kaspersky Lab researchers have discovered a new CryptoShuffler Trojan which steals cryptocurrencies from a user’s wallet by replacing their address with its own in the device’s clipboard.

To date, criminals have already succeeded in attacking Bitcoin wallets, stealing 23 BTC, which is equivalent to almost $140,000. The total amount stolen from other wallets ranges from a few dollars to several thousands.

The Trojan’s mechanism capitalises on the common transaction process used by most cryptocurrency users. It monitors the infected device’s clipboard and replaces the user’s wallet address with one owned by the malware creator when the user attempts to make a payment.

Sergey Yunkovsky, malware analyst at Kaspersky Lab, commented: “Cryptocurrency is not tomorrow's technology anymore. It is becoming part of our daily lives, actively spreading around the world, becoming more available for users, and a more appealing target for criminals.

“Lately, we’ve observed an increase in malware attacks targeted at different types of cryptocurrencies, and we expect this trend to continue. So users considering cryptocurrency investments should think about protecting their investments carefully.”

    Share Story:

Recent Stories


Sanctions evasion in an era of conflict: Optimising KYC and monitoring to tackle crime
The ongoing war in Ukraine and resulting sanctions on Russia, and the continuing geopolitical tensions have resulted in an unprecedented increase in parties added to sanctions lists.

Achieving operational resilience in the financial sector: Navigating DORA with confidence
Operational resilience has become crucial for financial institutions navigating today's digital landscape riddled with cyber risks and challenges. The EU's Digital Operational Resilience Act (DORA) provides a harmonised framework to address these complexities, but there are key factors that financial institutions must ensure they consider.

Legacy isn’t the enemy: what FSIs can do to keep their systems up and running
In this webinar we will examine some of the steps FSIs have already taken to rigorously monitor and test systems – both manually and with AI-powered automation – while satisfying the concerns of regulators and customers.

Optimising digital banking: Unifying communications for seamless CX
In the digital age, financial institutions risk falling behind their rivals if they fail to unite fragmented communications ecosystems to deliver seamless, personalised customer experiences.

This FStech webinar sponsored by Precisely explores vital strategies to optimise cross-channel messaging through omnichannel orchestration and real-time customer data access.