Kaspersky – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Mon, 07 Apr 2025 05:35:36 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Kaspersky – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 Hackers Hammer Android and iPhone Users As Bank Account Attacks Surge 258% in One Year: Kaspersky https://earlybirdsinvest.com/hackers-hammer-android-and-iphone-users-as-bank-account-attacks-surge-258-in-one-year-kaspersky/ https://earlybirdsinvest.com/hackers-hammer-android-and-iphone-users-as-bank-account-attacks-surge-258-in-one-year-kaspersky/#respond Mon, 07 Apr 2025 05:35:35 +0000 https://earlybirdsinvest.com/hackers-hammer-android-and-iphone-users-as-bank-account-attacks-surge-258-in-one-year-kaspersky/

The number of Android and iPhone users hit by bank malware is skyrocketing as criminals increasingly shift to mobile devices.

In a new report, the cybersecurity firm Kaspersky says the number of smartphone users who encountered banking malware in 2024 soared 258% year-on-year.

“In 2024, the number of users who encountered mobile banking Trojans grew 3.6 times compared to 2023: from 69,200 to 247,949.”

The most active mobile malware targeting bank accounts was Mamont, commanding a market share of approximately 36.7% in 2024.

“This malware first appeared at the end of 2023 and is distributed mostly in Russia and the CIS. Its distribution schemes are ranging from ages-old “Is that you in the picture?” scams to complex social engineering plots with fake stores and delivery tracking apps.”

Countries in Europe and Asia were the most heavily impacted by mobile banking malware in the last year.

As for banking malware targeting PCs (personal computers), some of the most significantly impacted countries in 2024 were in Central Asia, Kaspersky says.

“As in 2023, the highest share of banking Trojans was registered in Afghanistan, where it rose from 6% to 9% in 2024. Turkmenistan was next (as in 2023), where the figure rose from 5.2% to 8.8%, and Tajikistan was in third place (again), where the figure rose from 3.7% to 6.2%.”

Going forward, Kaspersky’s senior web content analyst Olga Svistunova, says the level of sophistication that cybercriminals employ to reach users is only going to rise.

“Looking ahead, we expect financial phishing to become even more personalized and targeted, focusing on exploiting vulnerabilities in everyday digital habits, which will demand increased vigilance and thorough approaches to protection.”

Follow us on X, Facebook and Telegram

Don’t Miss a Beat – Subscribe to get email alerts delivered directly to your inbox

Check Price Action

Surf The Daily Hodl Mix

&nbsp

Disclaimer: Opinions expressed at The Daily Hodl are not investment advice. Investors should do their due diligence before making any high-risk investments in Bitcoin, cryptocurrency or digital assets. Please be advised that your transfers and trades are at your own risk, and any losses you may incur are your responsibility. The Daily Hodl does not recommend the buying or selling of any cryptocurrencies or digital assets, nor is The Daily Hodl an investment advisor. Please note that The Daily Hodl participates in affiliate marketing.

Generated Image: Midjourney

]]>
https://earlybirdsinvest.com/hackers-hammer-android-and-iphone-users-as-bank-account-attacks-surge-258-in-one-year-kaspersky/feed/ 0 29451
Hackers Are Using Fake GitHub Code to Steal Your Bitcoin: Kaspersky https://earlybirdsinvest.com/hackers-are-using-fake-github-code-to-steal-your-bitcoin-kaspersky/ https://earlybirdsinvest.com/hackers-are-using-fake-github-code-to-steal-your-bitcoin-kaspersky/#respond Wed, 26 Feb 2025 07:15:43 +0000 https://earlybirdsinvest.com/hackers-are-using-fake-github-code-to-steal-your-bitcoin-kaspersky/

The GitHub code you use to build a trendy application or patch existing bugs might just be used to steal your bitcoin (BTC) or other crypto holdings, according to a Kaspersky report.

GitHub is popular tool among developers of all types, but even more so among crypto-focused projects, where a simple application may generate millions of dollars in revenue.

The report warned users of a “GitVenom” campaign that’s been active for at least two years but is steadily on the rise, involving planting malicious code in fake projects on the popular code repository platform.

The attack starts with seemingly legitimate GitHub projects — like making Telegram bots for managing bitcoin wallets or tools for computer games.

Each comes with a polished README file, often AI-generated, to build trust. But the code itself is a Trojan horse: For Python-based projects, attackers hide nefarious script after a bizarre string of 2,000 tabs, which decrypts and executes a malicious payload.

For JavaScript, a rogue function is embedded in the main file, triggering the launch attack. Once activated, the malware pulls additional tools from a separate hacker-controlled GitHub repository.

(A tab organizes code, making it readable by aligning lines. The payload is the core part of a program that does the actual work — or harm, in malware’s case.)

Once the system is infected, various other programs kick in to execute the exploit. A Node.js stealer harvests passwords, crypto wallet details, and browsing history, then bundles and sends them via Telegram. Remote access trojans like AsyncRAT and Quasar take over the victim’s device, logging keystrokes and capturing screenshots.

A “clipper” also swaps copied wallet addresses with the hackers’ own, redirecting funds. One such wallet netted 5 BTC — worth $485,000 at the time — in November alone.

Active for at least two years, GitVenom has hit users hardest in Russia, Brazil, and Turkey, though its reach is global, per Kaspersky.

The attackers keep it stealthy by mimicking active development and varying their coding tactics to evade antivirus software.

How can users protect themselves? By scrutinizing any code before running it, verifying the project’s authenticity, and being suspicious of overly polished READMEs or inconsistent commit histories.

Because researchers don’t expect these attacks to stop anytime soon: “We expect these attempts to continue in the future, possibly with small changes in the TTPs,” Kaspersky concluded in its post.

]]>
https://earlybirdsinvest.com/hackers-are-using-fake-github-code-to-steal-your-bitcoin-kaspersky/feed/ 0 21938