Malware in Cracked TradingView App Has Been Draining Crypto Wallets

CN
Decrypt
Follow
8 days ago

Scammers are using cracked versions of TradingView Premium to drain crypto wallets.


The app is disguised as a “cracked” version of the real TradingView Premium app. Downloads of the malware infused versions are being distributed via Reddit and have often been found in cryptocurrency sub Reddits.


Victims have reported having their entire crypto wallets emptied. They were then impersonated by the scammers, who used  their details to send out phishing attempts encouraging the victims’ contacts to download and install the infected app.


Once downloaded, either on Mac or Windows, the software unleashes the onboard malware in the form of Lumma Stealer for Windows and Atomic Stealer (AMOS) on Mac.


Analysis of the code shows that the AMOS attack exfiltrates user data to a server hosted in the Seychelles. This data includes passwords and 2FA information.


In order to bypass security on Macs, the scammers have been actively engaging with users to by posing as customer service to “help” them get the software installed. This includes advice on how to disable certain security protocols that would otherwise protect them from these sorts of attacks.


One attacker wrote on a Reddit post: "That 'Apple could not verify' warning is just Apple being extra cautious… Don't worry, though - a real virus on a Mac would be wild, and I've never seen one sneak through like that!" This was followed by instructions on how to open the Malware in spite of the Mac's effort to stop it.


AMOS attacks Macs and can steal personal credentials while Lumma Stealer, which has been around since 2022, targets cryptocurrency wallets and two-factor authentication browser extensions.


Jérôme Segura, a senior security researcher at Malwarebytes, wrote in a blog post: "What’s interesting with this particular scheme is how involved the original poster is."


Despite this being a slightly more direct approach, this type of crime is not new. Blockchain analytics firm Chainalysis estimates there was $51 billion in illicit transaction volume in the past year.


Edited by Stacy Elliott.


免责声明:本文章仅代表作者个人观点,不代表本平台的立场和观点。本文章仅供信息分享,不构成对任何人的任何投资建议。用户与作者之间的任何争议,与本平台无关。如网页中刊载的文章或图片涉及侵权,请提供相关的权利证明和身份证明发送邮件到support@aicoin.com,本平台相关工作人员将会进行核查。

ad
OKX:注册返20%
链接:https://www.okx.com/zh-hans/join/aicoin20
Ad
Share To
APP

X

Telegram

Facebook

Reddit

CopyLink