The post North Korean Malware Hits Ethereum and BSC Wallets: Details appeared on BitcoinEthereumNews.com. According to a recent report by cybersecurity firm Cisco Talos, hackers linked to North Korea delivered malicious JavaScript via a fake cryptocurrency application and an npm package. The malware, which has been dubbed “OtterCookie/BeaverTrail,” is capable of stealing keystrokes, clipboard content, screenshots, and browser wallets of the likes of Metamask.  Modus operandi  A potential victim is typically lured with a bogus job or freelance gig. The attacks install malware with the help of an obfuscated JavaScript payload and collect sensitive data. The stolen files then get uploaded to the attacker’s servers. Notably, the hackers use a crypto app as bait, so they are specifically targeting those users who already have crypto wallets on their computers.  Immediate actions Those who think that they were exposed to the attack should assume that their hot wallets were compromised.  Attackers typically steal extension files and passwords together with seed phrases to drain wallets.  One should immediately start moving funds and revoke token approvals for old wallets that were potentially hacked.  It would also be advisable to wipe and reinstall the operating system, given that such malware  In order not to fall victim to hackers in the first place, one should refrain from running code from untrusted sources. They can be run via containers or VMs. $2 billion worth of stolen crypto  Earlier this month, TechCrunch reported that North Korean hackers had already stolen roughly $2 billion worth of crypto this year. The report, which cites data from blockchain sleuth Elliptic, says that the total amount of crypto stolen by the “Hermit Kingdom” currently stands at $6 billion.  Source: https://u.today/north-korean-malware-hits-ethereum-and-bsc-wallets-detailsThe post North Korean Malware Hits Ethereum and BSC Wallets: Details appeared on BitcoinEthereumNews.com. According to a recent report by cybersecurity firm Cisco Talos, hackers linked to North Korea delivered malicious JavaScript via a fake cryptocurrency application and an npm package. The malware, which has been dubbed “OtterCookie/BeaverTrail,” is capable of stealing keystrokes, clipboard content, screenshots, and browser wallets of the likes of Metamask.  Modus operandi  A potential victim is typically lured with a bogus job or freelance gig. The attacks install malware with the help of an obfuscated JavaScript payload and collect sensitive data. The stolen files then get uploaded to the attacker’s servers. Notably, the hackers use a crypto app as bait, so they are specifically targeting those users who already have crypto wallets on their computers.  Immediate actions Those who think that they were exposed to the attack should assume that their hot wallets were compromised.  Attackers typically steal extension files and passwords together with seed phrases to drain wallets.  One should immediately start moving funds and revoke token approvals for old wallets that were potentially hacked.  It would also be advisable to wipe and reinstall the operating system, given that such malware  In order not to fall victim to hackers in the first place, one should refrain from running code from untrusted sources. They can be run via containers or VMs. $2 billion worth of stolen crypto  Earlier this month, TechCrunch reported that North Korean hackers had already stolen roughly $2 billion worth of crypto this year. The report, which cites data from blockchain sleuth Elliptic, says that the total amount of crypto stolen by the “Hermit Kingdom” currently stands at $6 billion.  Source: https://u.today/north-korean-malware-hits-ethereum-and-bsc-wallets-details

North Korean Malware Hits Ethereum and BSC Wallets: Details

According to a recent report by cybersecurity firm Cisco Talos, hackers linked to North Korea delivered malicious JavaScript via a fake cryptocurrency application and an npm package.

The malware, which has been dubbed “OtterCookie/BeaverTrail,” is capable of stealing keystrokes, clipboard content, screenshots, and browser wallets of the likes of Metamask. 

Modus operandi 

A potential victim is typically lured with a bogus job or freelance gig. The attacks install malware with the help of an obfuscated JavaScript payload and collect sensitive data. The stolen files then get uploaded to the attacker’s servers.

Notably, the hackers use a crypto app as bait, so they are specifically targeting those users who already have crypto wallets on their computers. 

Immediate actions

Those who think that they were exposed to the attack should assume that their hot wallets were compromised. 

Attackers typically steal extension files and passwords together with seed phrases to drain wallets. 

One should immediately start moving funds and revoke token approvals for old wallets that were potentially hacked. 

It would also be advisable to wipe and reinstall the operating system, given that such malware 

In order not to fall victim to hackers in the first place, one should refrain from running code from untrusted sources. They can be run via containers or VMs.

$2 billion worth of stolen crypto 

Earlier this month, TechCrunch reported that North Korean hackers had already stolen roughly $2 billion worth of crypto this year.

The report, which cites data from blockchain sleuth Elliptic, says that the total amount of crypto stolen by the “Hermit Kingdom” currently stands at $6 billion. 

Source: https://u.today/north-korean-malware-hits-ethereum-and-bsc-wallets-details

Market Opportunity
Octavia Logo
Octavia Price(VIA)
$0.0016557
$0.0016557$0.0016557
-0.28%
USD
Octavia (VIA) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact [email protected] for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

Orbix-AI Unveils “The Brain of the Market”: A New Era of Predictive Analytics with Its Advanced AI Trading Indicator

Orbix-AI Unveils “The Brain of the Market”: A New Era of Predictive Analytics with Its Advanced AI Trading Indicator

Orbix-AI today announced the launch of its groundbreaking AI Trading Indicator. It is meant to be a paradigm shift in the volatile market that is already dominated
Share
Techbullion2026/02/21 16:04
OpenAI Cuts Spending Target to $600B and Projects $280B Revenue by 2030

OpenAI Cuts Spending Target to $600B and Projects $280B Revenue by 2030

TLDR OpenAI has cut its infrastructure spend target from $1.4 trillion to $600 billion by 2030 The company is projecting $280 billion in revenue by 2030, up from
Share
Coincentral2026/02/21 16:44
Polygon Tops RWA Rankings With $1.1B in Tokenized Assets

Polygon Tops RWA Rankings With $1.1B in Tokenized Assets

The post Polygon Tops RWA Rankings With $1.1B in Tokenized Assets appeared on BitcoinEthereumNews.com. Key Notes A new report from Dune and RWA.xyz highlights Polygon’s role in the growing RWA sector. Polygon PoS currently holds $1.13 billion in RWA Total Value Locked (TVL) across 269 assets. The network holds a 62% market share of tokenized global bonds, driven by European money market funds. The Polygon POL $0.25 24h volatility: 1.4% Market cap: $2.64 B Vol. 24h: $106.17 M network is securing a significant position in the rapidly growing tokenization space, now holding over $1.13 billion in total value locked (TVL) from Real World Assets (RWAs). This development comes as the network continues to evolve, recently deploying its major “Rio” upgrade on the Amoy testnet to enhance future scaling capabilities. This information comes from a new joint report on the state of the RWA market published on Sept. 17 by blockchain analytics firm Dune and data platform RWA.xyz. The focus on RWAs is intensifying across the industry, coinciding with events like the ongoing Real-World Asset Summit in New York. Sandeep Nailwal, CEO of the Polygon Foundation, highlighted the findings via a post on X, noting that the TVL is spread across 269 assets and 2,900 holders on the Polygon PoS chain. The Dune and https://t.co/W6WSFlHoQF report on RWA is out and it shows that RWA is happening on Polygon. Here are a few highlights: – Leading in Global Bonds: Polygon holds 62% share of tokenized global bonds (driven by Spiko’s euro MMF and Cashlink euro issues) – Spiko U.S.… — Sandeep | CEO, Polygon Foundation (※,※) (@sandeepnailwal) September 17, 2025 Key Trends From the 2025 RWA Report The joint publication, titled “RWA REPORT 2025,” offers a comprehensive look into the tokenized asset landscape, which it states has grown 224% since the start of 2024. The report identifies several key trends driving this expansion. According to…
Share
BitcoinEthereumNews2025/09/18 00:40