← Back
MalwareThe Hacker News·1 hour ago

19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code

Cybersecurity researchers discovered 19 malicious browser extensions across Chrome and Edge that were designed to steal wallet secrets and drain cryptocurrency from users. The extensions, which shared code similarities and tradecraft patterns, were published over a six-month period, suggesting a coordinated campaign by the same threat actors. The findings highlight ongoing risks from malicious extensions targeting users' cryptocurrency assets.

Read full article at The Hacker News

Related Articles

MalwareSANS Internet Storm Center·9 hours ago

Some Malicious PE Stats, (Thu, Aug 27th)

During my last FOR610 session, a student asked me if I had some statistics in mind about the compilers used to generate malicious PE files? A couple of months ago, I shared some stats about the trend in 64bits VS. 32bits malware[1]. Can we go a bit further? I (vibe-)coded a Python script based on the pefile library[2] to extract some info from the PE headers. Indeed, the PE file format contains a lot of metadata! They can be accessed using a lot of tools, like Detect It Easy:

MalwareSecurity Affairs·20 hours ago

Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback

Dark Caracal has deployed GoCaracal, an upgraded variant of the Bandook toolkit, targeting a communications organization in Venezuela with novel command-and-control capabilities. The malware incorporates an Ethereum-based C2 fallback mechanism designed to maintain resilient communications even if primary command channels are disrupted. Arctic Wolf Labs researchers attribute the June 2026 intrusion to the Lebanon-linked espionage group, marking a continuation of their targeting of Venezuelan entities.