Phrase – Earlybirds Invest https://earlybirdsinvest.com Latest Crypto News Wed, 25 Jun 2025 21:46:02 +0000 en-US hourly 1 https://wordpress.org/?v=6.9.7 https://i0.wp.com/earlybirdsinvest.com/wp-content/uploads/2024/12/cropped-New-Project-2024-12-17T235703.455.png?fit=32%2C32&ssl=1 Phrase – Earlybirds Invest https://earlybirdsinvest.com 32 32 240146708 Did your phone just steal your seed phrase? https://earlybirdsinvest.com/did-your-phone-just-steal-your-seed-phrase/ https://earlybirdsinvest.com/did-your-phone-just-steal-your-seed-phrase/#respond Wed, 25 Jun 2025 21:46:02 +0000 https://earlybirdsinvest.com/did-your-phone-just-steal-your-seed-phrase/

You know that moment when you play a song for your friends, and they’re like “ehh… it’s okay, I guess?” – but a week later they’re humming it under their breath, and next thing you know it’s on their gym playlist?

Yeah. This I knew you’d come around feeling is undefeated.

Listening to music

And it’s kind of how it feels watching US states slowly start understanding Bitcoin.

The newest state to officially hit play: Texas.

Governor Greg Abbott signed off on a bill to add Bitcoin to the state’s strategic reserves.

So now Texas joins Arizona and New Hampshire in the SBR club.

And who else is tapping their foot to the Bitcoin beat?

Well, a bunch of state Bitcoin reserve proposals have flopped.

But there are still a few holding on in the queue:

  • Massachusetts;

  • Michigan;

  • Ohio;

  • Rhode Island;

  • And North Carolina.

No guarantees – but keep your headphones charged just in case.

Divider

😾 Bad cat

Pop quiz time: there’s this thing called SparkKitty. Purely based on vibes, what do you think it is?

A) A cursed version of the Nyan Cat

B) The latest toy every iPad kid wants

C) A furry Twitch streamer

Got your guess?

Too bad. It was a trick question. It’s D) None of the above.

Kid eating apple

SparkKitty is actually a malware recently discovered by the cybersecurity firm Kaspersky.

And no, it’s not cute.

It hides inside fake or modified apps (like TikTok mods, casino games, or crypto apps), and it’s been found on both Android and iOS.

SparkKitty hiding from us

On iPhones:

It hides inside fake versions of legit developer tools like AFNetworking or Alamofire – normally used to help apps connect to the internet. Attackers modify them to launch malware as soon as the app opens.

And to get around Apple’s App Store checks, they use something called an Enterprise profile – a system meant for companies to test apps on employee phones. It lets apps be installed directly, without Apple’s usual security reviews.

On Android, the malware shows up in two main ways:

👉 Some versions are fake or modified apps with malicious code written in Java or Kotlin;

👉 Others use a tool called Xposed, which lets the malware hide inside real apps and mess with what they do – without changing how they look.

Mom, come pick me up, I'm scared

Once installed, the malware:

  • Pretends to be a support chat or similar feature, then asks for access to your photo gallery;

  • Scans your photos for sensitive text like crypto seed phrases;

  • Sends those photos (and device info) straight to the attackers’ command server.

Basically, if you’ve ever taken a screenshot of your crypto wallet recovery phrase… you’d be cooked.

Shocked kid sipping a milkshake

And yeah, we’ve talked about stuff like this many times before. But until people stop getting scammed, we’re not shutting up.

So, here’s how to protect yourself:

1/ Only download from official app stores

Stick to Google Play and the Apple App Store.

And even then, don’t let your guard down – always check reviews and verify the developer.

2/ Don’t keep sensitive info in your photo gallery

No screenshots of seed phrases. No private keys. No “temporary” backups.

3/ Deny gallery access unless it makes sense

If an app that has nothing to do with photos asks for gallery access – say no.

But above all:

If your phone is where you manage your crypto, then it’s your wallet.

And just like you wouldn’t let a random stranger near your actual wallet, you shouldn’t let some sketchy app do that either.

]]>
https://earlybirdsinvest.com/did-your-phone-just-steal-your-seed-phrase/feed/ 0 44106
SparkKitty Malware Targets Photo Galleries to Hunt Crypto Seed Phrase https://earlybirdsinvest.com/sparkkitty-malware-targets-photo-galleries-to-hunt-crypto-seed-phrase/ https://earlybirdsinvest.com/sparkkitty-malware-targets-photo-galleries-to-hunt-crypto-seed-phrase/#respond Tue, 24 Jun 2025 10:54:04 +0000 https://earlybirdsinvest.com/sparkkitty-malware-targets-photo-galleries-to-hunt-crypto-seed-phrase/

A new type of malware, called SparkKitty, is being used to collect photos from mobile devices to find screenshots of cryptocurrency seed phrases.

The discovery was made by Kaspersky researchers Sergey Puzan and Dmitry Kalinin, who explained that SparkKitty is able to infect both iPhones and Android phones by hiding inside apps available on official app stores.

According to a June 23 report, the malware has been found in several apps, including one called 币coin on the Apple App Store and another named SOEX on Google Play.

Crypto Token VS Coin (Animated Explainer & Examples)

Did you know?

Want to get smarter & wealthier with crypto?

Subscribe – We publish new crypto explainer videos every week!

The first claimed to be a crypto tracking tool, while the second combined messaging with exchange features. SOEX had been downloaded over 10,000 times before Kaspersky alerted Google, which then removed it from the store.

Once installed, SparkKitty copies all images from a device’s gallery without checking their contents. While the main goal seems to be finding wallet recovery phrases, the attackers could also get access to other private information stored in those pictures.

According to Kaspersky’s research, the malware mostly affects users in Southeast Asia and China. Many of the infected apps were written in Chinese and designed to appeal to users in that region.

However, the researchers noted that SparkKitty is capable of spreading to other parts of the world, as it does not include any regional limits in its design.

On June 9, Kaspersky reported that a hacker group known as Librarian Ghouls had taken control of hundreds of computers in Russia to secretly mine cryptocurrency. How? Read the full story.

Having completed a Master’s degree in Economics, Politics, and Cultures of the East Asia region, Aaron has written scientific papers analyzing the differences between Western and Collective forms of capitalism in the post-World War II era.
With close to a decade of experience in the FinTech industry, Aaron understands all of the biggest issues and struggles that crypto enthusiasts face. He’s a passionate analyst who is concerned with data-driven and fact-based content, as well as that which speaks to both Web3 natives and industry newcomers.
Aaron is the go-to person for everything and anything related to digital currencies. With a huge passion for blockchain & Web3 education, Aaron strives to transform the space as we know it, and make it more approachable to complete beginners.
Aaron has been quoted by multiple established outlets, and is a published author himself. Even during his free time, he enjoys researching the market trends, and looking for the next supernova.


]]>
https://earlybirdsinvest.com/sparkkitty-malware-targets-photo-galleries-to-hunt-crypto-seed-phrase/feed/ 0 43827
The ‘Bitcoin Family’ has split and hidden seed phrase across 4 continents amid rising kidnappings https://earlybirdsinvest.com/the-bitcoin-family-has-split-and-hidden-seed-phrase-across-4-continents-amid-rising-kidnappings/ https://earlybirdsinvest.com/the-bitcoin-family-has-split-and-hidden-seed-phrase-across-4-continents-amid-rising-kidnappings/#respond Sun, 08 Jun 2025 02:10:45 +0000 https://earlybirdsinvest.com/the-bitcoin-family-has-split-and-hidden-seed-phrase-across-4-continents-amid-rising-kidnappings/

The ‘Bitcoin Family’ has completely overhauled its security measures amid rising cases of crypto-related kidnappings, according to a CNBC report.

The family, which sold all their belongings in 2017 to invest in Bitcoin (BTC) and now travels around the world, has taken extreme measures amid a rise in perceived threats. This includes storing parts of their Bitcoin wallet seed phrase etched on fireproof metal plates stored across four continents.

The family consists of Didi Taihuttu, his wife Romaine, and their three daughters—Joli, Juna, and Jessa. The Taihuttu family gained the spotlight over the years for living a bankless life supported by Bitcoin.

Taihuttu told CNBC:

“We have changed everything. Even if someone held me at gunpoint, I can’t give them more than what’s on my wallet on my phone. And that’s not a lot.”

Bitcoin Family is not alone in increasing security measures

Over the past few months, there has been a dramatic increase in crypto-related kidnapping and extortion cases. Earlier this year, David Balland, co-founder of hardware wallet Ledger, and his partner were kidnapped and tortured, with Balland reportedly losing a finger in the ordeal.

Early last month, the video of the attempted kidnapping of the daughter of the CEO of a prominent French crypto exchange in broad daylight went viral, striking fear among individuals with substantial crypto holdings.

Following the surge in attacks, the French government vowed to increase security measures for crypto executives. This included priority access to the police emergency line, home visits, and safety guidance and briefings from law enforcement, Politico reported.

Days after the incident in France, an Italian tourist escaped the clutches of his kidnappers from a Manhattan apartment. The victim was reportedly held hostage for 17 days and tortured using myriad methods, from electric shocks from tasers to being whipped with a gun. The perpetrators, who were trying to extort the victim’s Bitcoin wallet password, were arrested late last month.

Amid the spate of kidnappings, crypto investors like the Bitcoin Family have started tightening security measures. Several of them have resorted to private security firms to hire bodyguards or armored trucks to ensure safety.

Insurance companies have also started cashing in on the opportunity, offering kidnap and ransom (K&R) policies tailor-made for crypto holders.

Taihuttu told CNBC that they’ve factored in the rising cases and reassessed their security measures. He said:

“We’ve been talking about it a lot as a family. My kids read the news, too — especially that story in France, where the daughter of a CEO was almost kidnapped on the street.”

Bitcoin Family has taken security into their own hands

Amid the undeniable growth in threats, the Taihutti family has taken several steps to ensure safety.

Among the changes was the decision to ditch hardware wallets, which were once touted as the safest way to store crypto. Taihuttu said:

“It’s a strange world at the moment. So we’re taking our own precautions — and when it comes to wallets, we’re now completely hardware wallet-less. We don’t use any hardware wallets anymore.”

The Taihutti family decided to stay off hardware wallets amid growing concerns about backdoors and remote access features. Over the past eight months, the Bitcoin family switched from hardware wallets to a hybrid system where the seed phrase was stored via partly digital and partly analogue methods.

As part of the enhanced security measures, the family has split a 24-word Bitcoin seed phrase into four sets of six words. Each set of words is stored on a different continent. This means that Taihuttu needs to make at least one international trip, depending on which set of words is required, to access the wallet. He can, however, add funds to the wallet without any hassles. Taihuttu explained:

“Even if someone finds 18 of the 24 words, they can’t do anything.”

While Taihuttu stores some parts of the seed phrase through blockchain encryption platforms, he has etched others on fireproof steel plates with a hammer and letter punch and hidden them. He has also added a separate layer of personal encryption to throw off would-be attackers by switching out certain words of the seed phrase.

The family uses the above method to store about 65% of its crypto holdings, considering it to be safer than using a centralized vault, like the Swiss Alps bunker used by Coinbase-owned Xapo. This is because Taihuttu is concerned about being able to access his funds in case the company goes bankrupt.

The Taihuttu family has also moved away from centralized exchanges, executing around 80% of its trades via decentralized platforms like Apex.

For the family’s crypto stored in hot wallets for trading, Taihuttu uses multi-signature wallets to ensure enhanced safety. He added that they treat the majority of their cold wallet savings as a pension fund that the family will only access once the BTC price reaches $1 million.

Lifestyle changes amid growing threat

The Taihuttu family has a large social media presence, with tens of thousands of followers across platforms. However, the family has been stepping away from the spotlight amid the growing threats. He noted:

“We got a little bit famous in a niche market — but that niche is becoming a really big market now.”

Taihuttu believes that the number of crypto robberies is going to keep increasing, which is why the family is making tough choices, from curtailing video shoots to avoiding France.

While the family is currently in Thailand, they have stopped posting regular travel updates and shooting videos at home. Taihuttu said:

“We stayed in a very beautiful house for six months — then I started getting emails from people who figured out which house it was. They warned me to be careful, told me not to leave my kids alone. So we moved. And now we don’t film anything at all.”

Taihuttu added that while creating content is his passion, the concern for his daughters’ safety is forcing him to stay away from the camera.

Mentioned in this article
]]>
https://earlybirdsinvest.com/the-bitcoin-family-has-split-and-hidden-seed-phrase-across-4-continents-amid-rising-kidnappings/feed/ 0 40756
Crypto Scammers Go Old School: Ledger Users Hit with New Seed Phrase Mail Scam https://earlybirdsinvest.com/crypto-scammers-go-old-school-ledger-users-hit-with-new-seed-phrase-mail-scam/ https://earlybirdsinvest.com/crypto-scammers-go-old-school-ledger-users-hit-with-new-seed-phrase-mail-scam/#respond Wed, 30 Apr 2025 12:08:18 +0000 https://earlybirdsinvest.com/crypto-scammers-go-old-school-ledger-users-hit-with-new-seed-phrase-mail-scam/

Owners of Ledger hardware wallets have reported receiving fake physical letters designed to trick them into revealing their wallet seed phrases as part of a new wave of crypto scams.

On April 29, tech analyst Jacob Canfield posted a warning on X, sharing a scam letter that had arrived at his home.

Disguised as official correspondence from Ledger, the letter instructed him to perform a “critical security update” by scanning a QR code and entering his 24-word recovery phrase.

Ledger Scam Letter Mimics Official Mail With Logo and Reference Number

The professionally designed letter included Ledger’s logo, a return address, and a reference number to lend credibility.

It warned that failure to complete the “validation” could result in restricted access to the user’s funds—an intimidation tactic meant to spur action.

Ledger responded directly to Canfield’s post, confirming the letter was fraudulent and part of a phishing attempt.

“Ledger will never ask for your 24-word recovery phrase,” the company reiterated, advising users not to trust unsolicited messages or individuals claiming to be Ledger representatives.

Seed phrases, often 12 to 24 words long, are the most sensitive component of a crypto wallet. Anyone who gains access to them can take full control of a user’s assets.

Some community members suspect the scam stems from Ledger’s infamous 2020 data breach, when the personal information of over 270,000 customers—including names, emails, and home addresses—was leaked online.

That incident was followed by numerous phishing campaigns, including one in which tampered Ledger devices were mailed to victims to install malware.

The recent mail scam appears to be another tactic targeting those affected by the breach, showing how long the consequences of data leaks can linger in the crypto world.

Phishing Scam Targets Coinbase, Gemini Users

In March, several crypto users flagged sophisticated phishing scam emails, which targeted Coinbase and Gemini users with legit-looking fraudulent emails.

The mass email reportedly arrived in various user inboxes on Saturday. The scam mail pointed to a class action lawsuit against Coinbase for allegedly involving in unregistered securities, adding that the court has mandated users to convert their assets into self-custody wallets.

Further, the mail also stressed that the deadline to transfer user assets to a self-custodial wallet is April 1st, 2025.

As reported, in the first three months of 2025, the crypto ecosystem lost a whopping $1,635,933,800 across 39 incidents, according to the blockchain security platform Immunefi.

The report claimed, “Q1 2025 marks the worst quarter for hacks in the history of the crypto ecosystem.”

Most of that was the result of only two hacks of two centralized exchanges. Phemex suffered a $69.1 million loss in January, while Bybit lost $1.46 billion in February.

Subsequently, the total number of losses in the first quarter marks a 4.7x increase compared to Q1 2024. At that time, hackers and fraudsters stole $348,251,217.

Notably, experts assume that the infamous North Korean Lazarus Group is behind the two largest attacks. They stole $1.52 billion, which is 94% of total losses.

The post Crypto Scammers Go Old School: Ledger Users Hit with New Seed Phrase Mail Scam appeared first on Cryptonews.

]]>
https://earlybirdsinvest.com/crypto-scammers-go-old-school-ledger-users-hit-with-new-seed-phrase-mail-scam/feed/ 0 33613