A new investigation into a effectively-knownreveals that its creators have managed to steal at minimum $24 million in cryptocurrency by taking in excess of a victim’s clipboard.
researchers at pin the action to the clipboard stealer module of the MyKings botnet, making on completed by scientists at SophosLabs.
unearthed over 1300 new addresses that have been utilized to transfer around $24 million in , Ethereum and Dogecoin by itself.
We are looking at how our viewers use VPNs with streaming internet sites like Netflix so we can improve our material and supply better suggestions. This survey won’t consider extra than 60 seconds of your time, and we’d massively enjoy if you would share your experiences with us.
“MyKings is a long-standing and relentless botnet which has been active from at least 2016,” shares Avast, adding that the in addition to clipboard stealers, the botnet’s vast infrastructure consists of several other parts and modules, including bootkit, coin miners, droppers, and more.
As its name suggests, the clipboard stealer monitors the clipboard for specific content, such as wallet addresses, and then manipulates it to trick the users into pasting a different value from the one they copied, counting on the fact that users do not expect to paste values different from the one that they copied.
The researchers suggest that it’ll take special care and attention for anyone to ensure that the wallet addresses, which are in the form of a rather long string of random numbers and letters, haven’t been manipulated.
This is why despite the rather simple approach, the attackers have managed to hijack transactions and route over $24,700,000 to their wallets instead of the intended recipient.
The researchers add that they found several comments from people atservices who claim to have sent money to the threat actor’s wallets by mistake, asking for it to be returned.
“In response to this malicious activity, we want to increase awareness about frauds like this and we highly recommend people always double-check transaction details before sending money,” warn the researchers.