The post Scammers are using new malware to steal crypto login appeared on BitcoinEthereumNews.com. Crypto scammers are now using a new malware to steal crypto loginsThe post Scammers are using new malware to steal crypto login appeared on BitcoinEthereumNews.com. Crypto scammers are now using a new malware to steal crypto logins

Scammers are using new malware to steal crypto login

Crypto scammers are now using a new malware to steal crypto logins from traders and investors in the crypto gaming industry. According to research from cybersecurity firm Kaspersky, the scammers are inserting malware into pirate mods for Roblox and other games to steal crypto login credentials from users.

According to a post from Kaspersky, there is now a new variety of infostealer called Stealka, which it has so far encountered on distribution platforms like GitHub, SourceForge, Softpedia, and sites.google.com. The malware is disguised as unofficial mods, cheats, and cracks for Windows-based games and other apps. Stealka is used by scammers to exfiltrate sensitive login and browser information, which they in turn use to steal digital assets.

Scammers deploy new malware to steal digital assets

The malware primarily targets data contained in browsers such as Chrome, Opera, Firefox, Edge, Yandex, Brave, as well as the settings and databases of over 100 browser extensions. The extensions include digital asset wallets from Binance, Crypto.com, MetaMask, and Trust Wallet. It also targets password managers like LastPass, NordPass, and 1Password, and 2FA apps like Google Authenticator, Authy, and Bitwarden.

In addition, Kaspersky noted that Stealka doesn’t stop with browser extensions, noting that it can also lift encrypted private keys, seed phrase data, and wallet file paths from standalone cryptocurrency wallet apps. This includes applications like MyCrypto, MyMonero, Binance, Exodus, as well as other applications for Bitcoin, Ethereum, Solar, Novacoin, Monero, Dogecoin, and BitcoinABC.

Kaspersky cybersecurity expert Artem Ushkov explained that the new malware was detected by the company’s endpoint solutions for Windows machines in November. The Stealka malware can also steal data and authentication tokens for messaging apps like Discord and Telegram, password managers, email clients like Mailbird and Outlook, note taking applications like StickyNotes on Microsoft, Notezilla, NoteFly, and VPN clients like Windscribe, OpenVPN, and ProtonVPN.

Ushkov details the activities of the malware

According to Ushkov, the malware is based in Russia, targeting mainly users from that region. However, attacks by the malware have also been detected in other countries, including Türkiye, Brazil, Germany, and India,” he added. In view of this threat, Kaspersky has advised users to stay away from ploys by scammers trying to use this malware and others to steal their credentials. They have urged users to stay away from unofficial or pirated mods, noting the need to use antivirus software from reputable companies.

The blog also advised users against storing important and sensitive information in browsers, asking them to employ the use of two-factor authentication wherever available. In addition, they are asked to use backup codes in most situations, urging them not to store these codes on browsers or in text documents. In addition, users are enjoined to be watchful of where they download games and other files from, noting that these scammers play on users’ need to download free files from unofficial sources.

In a popular case mentioned by authorities this week, an entrepreneur based in Singapore lost his entire crypto portfolio after downloading a fake game. The entrepreneur said he came across a beta testing opportunity for Telegram in an online game called MetaToy. He noted that he felt the game was genuine because of some metrics, including the appearance of its website and the activity of its Discord. However, after downloading the game launcher, he unknowingly installed malware, which wiped more than $14,189 in crypto from his system.

While scammers can use Stealka to steal personal info and digital assets, there is no indication that it has done any huge damage, the cybersecurity expert noted. “We are not aware of the amount of crypto that has been stolen using it,” said Ushkov. “Our solutions protect against this threat: all detected Stealka malware was blocked by our solutions.” This means that it remains unknown if scammers have used the malware to steal digital assets and the scale of their theft.

Get $50 free to trade crypto when you sign up to Bybit now

Source: https://www.cryptopolitan.com/scammers-new-malware-to-steal-crypto-login/

Market Opportunity
Nowchain Logo
Nowchain Price(NOW)
$0.00209
$0.00209$0.00209
-0.47%
USD
Nowchain (NOW) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Shocking OpenVPP Partnership Claim Draws Urgent Scrutiny

Shocking OpenVPP Partnership Claim Draws Urgent Scrutiny

The post Shocking OpenVPP Partnership Claim Draws Urgent Scrutiny appeared on BitcoinEthereumNews.com. The cryptocurrency world is buzzing with a recent controversy surrounding a bold OpenVPP partnership claim. This week, OpenVPP (OVPP) announced what it presented as a significant collaboration with the U.S. government in the innovative field of energy tokenization. However, this claim quickly drew the sharp eye of on-chain analyst ZachXBT, who highlighted a swift and official rebuttal that has sent ripples through the digital asset community. What Sparked the OpenVPP Partnership Claim Controversy? The core of the issue revolves around OpenVPP’s assertion of a U.S. government partnership. This kind of collaboration would typically be a monumental endorsement for any private cryptocurrency project, especially given the current regulatory climate. Such a partnership could signify a new era of mainstream adoption and legitimacy for energy tokenization initiatives. OpenVPP initially claimed cooperation with the U.S. government. This alleged partnership was said to be in the domain of energy tokenization. The announcement generated considerable interest and discussion online. ZachXBT, known for his diligent on-chain investigations, was quick to flag the development. He brought attention to the fact that U.S. Securities and Exchange Commission (SEC) Commissioner Hester Peirce had directly addressed the OpenVPP partnership claim. Her response, delivered within hours, was unequivocal and starkly contradicted OpenVPP’s narrative. How Did Regulatory Authorities Respond to the OpenVPP Partnership Claim? Commissioner Hester Peirce’s statement was a crucial turning point in this unfolding story. She clearly stated that the SEC, as an agency, does not engage in partnerships with private cryptocurrency projects. This response effectively dismantled the credibility of OpenVPP’s initial announcement regarding their supposed government collaboration. Peirce’s swift clarification underscores a fundamental principle of regulatory bodies: maintaining impartiality and avoiding endorsements of private entities. Her statement serves as a vital reminder to the crypto community about the official stance of government agencies concerning private ventures. Moreover, ZachXBT’s analysis…
Share
BitcoinEthereumNews2025/09/18 02:13
XRP vs Ethereum Market Cap Flip Predicted as ETF Inflows Surge

XRP vs Ethereum Market Cap Flip Predicted as ETF Inflows Surge

The post XRP vs Ethereum Market Cap Flip Predicted as ETF Inflows Surge appeared on BitcoinEthereumNews.com. XRP-linked ETFs secured $1B in net inflows, defying
Share
BitcoinEthereumNews2025/12/20 21:47
BetFury is at SBC Summit Lisbon 2025: Affiliate Growth in Focus

BetFury is at SBC Summit Lisbon 2025: Affiliate Growth in Focus

The post BetFury is at SBC Summit Lisbon 2025: Affiliate Growth in Focus appeared on BitcoinEthereumNews.com. Press Releases are sponsored content and not a part of Finbold’s editorial content. For a full disclaimer, please . Crypto assets/products can be highly risky. Never invest unless you’re prepared to lose all the money you invest. Curacao, Curacao, September 17th, 2025, Chainwire BetFury steps onto the stage of SBC Summit Lisbon 2025 — one of the key gatherings in the iGaming calendar. From 16 to 18 September, the platform showcases its brand strength, deepens affiliate connections, and outlines its plans for global expansion. BetFury continues to play a role in the evolving crypto and iGaming partnership landscape. BetFury’s Participation at SBC Summit The SBC Summit gathers over 25,000 delegates, including 6,000+ affiliates — the largest concentration of affiliate professionals in iGaming. For BetFury, this isn’t just visibility, it’s a strategic chance to present its Affiliate Program to the right audience. Face-to-face meetings, dedicated networking zones, and affiliate-focused sessions make Lisbon the ideal ground to build new partnerships and strengthen existing ones. BetFury Meets Affiliate Leaders at its Massive Stand BetFury arrives at the summit with a massive stand placed right in the center of the Affiliate zone. Designed as a true meeting hub, the stand combines large LED screens, a sleek interior, and the best coffee at the event — but its core mission goes far beyond style. Here, BetFury’s team welcomes partners and affiliates to discuss tailored collaborations, explore growth opportunities across multiple GEOs, and expand its global Affiliate Program. To make the experience even more engaging, the stand also hosts: Affiliate Lottery — a branded drum filled with exclusive offers and personalized deals for affiliates. Merch Kits — premium giveaways to boost brand recognition and leave visitors with a lasting conference memory. Besides, at SBC Summit Lisbon, attendees have a chance to meet the BetFury team along…
Share
BitcoinEthereumNews2025/09/18 01:20