Tag: crypto
-
An $8.4 Billion Chinese Hub for Crypto Crime Is Incorporated in Colorado
Before a crackdown by Telegram, Xinbi Guarantee grew into one of the internet’s biggest markets for Chinese-speaking crypto scammers and money laundering. And all registered to a US address. First seen on wired.com Jump to article: www.wired.com/story/xinbi-guarantee-crypto-scam-hub/
-
New attack can steal cryptocurrency by planting false memories in AI chatbots
Malicious “context manipulation” technique causes bot to send payments to attacker’s wallet. First seen on arstechnica.com Jump to article: arstechnica.com/security/2025/05/ai-agents-that-autonomously-trade-cryptocurrency-arent-ready-for-prime-time/
-
Inferno Drainer ist zurück: Check Point warnt vor neuer Angriffswelle auf Krypto-Wallets
Check Point schützt seine Kunden durch Technologien wie Quantum Gateway, Harmony Endpoint und ThreatCloud AI inklusive Erkennungssignaturen wie Inferno.TC. oder Trojan.UNKNOWN.InfernoDrainer.A. First seen on infopoint-security.de Jump to article: www.infopoint-security.de/inferno-drainer-ist-zurueck-check-point-warnt-vor-neuer-angriffswelle-auf-krypto-wallets/a40781/
-
IAM 2025: Diese 10 Trends entscheiden über Ihre Sicherheitsstrategie
Tags: access, ai, api, authentication, best-practice, cio, ciso, cloud, compliance, conference, credentials, crypto, cryptography, detection, dora, framework, governance, iam, identity, iot, kritis, login, mfa, nis-2, resilience, risk, risk-analysis, service, strategy, threat, tool, zero-trustDie Kernaussage der EIC Conference 2025: IAM ist ein ganzheitlicher Architekturansatz und kein Toolset. Identity & Access Management (IAM) ist nicht länger eine Frage der Tool-Auswahl, sondern der Architektur. Diese Kernaussage prägte die European Identity and Cloud Conference 2025, die vom 6. bis 9. Mai in Berlin stattfand. Mit über 1.500 Teilnehmern, 300 Rednern und…
-
Krypto-Betrug: Alte Malware ‘Inferno” lebt im Verborgenen weiter
Trotz gegenteiliger Behauptungen ist ein berüchtigter Krypto-Wallet-Drainer namens Inferno weiterhin aktiv und gefährlicher denn je. Sicherheitsforscher von Check Point Research (CPR) deckten auf, dass die vermeintliche Abschaltung im Jahr 2023 lediglich ein Ablenkungsmanöver war. First seen on it-daily.net Jump to article: www.it-daily.net/it-sicherheit/cybercrime/betrug-malware-inferno-lebt-weiter
-
FreeDrain Phishing Scam Drains Crypto Hobbyists’ Wallets
A global cryptocurrency phishing operation likely based in India or Sri Lanka has been stealing digital assets since at least 2022 First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/freedrain-phishing-scam-crypto/
-
German Police Shutter “eXch” Money Laundering Service
Germany’s BKA has seized the infrastructure behind the crypto swapping service eXch First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/german-police-shutter-exch-money/
-
German police seized eXch crypto exchange
Germany’s BKA shut down eXch crypto exchange, seizing its infrastructure over money laundering and illegal trading platform charges. On April 30, 2025, Germany’s Federal Criminal Police (BKA) shut down the eXch crypto exchange (eXch.cx), seizing its infrastructure over money laundering and illegal trading allegations. ZIT, BKA, and Dutch FIOD led the operation, expecting the evidence…
-
North Korea’s OtterCookie Malware Added a New Feature to Attack Windows, Linux, and macOS
A North Korea-linked attack group, known as WaterPlum (also referred to as Famous Chollima or PurpleBravo), has been actively targeting financial institutions, cryptocurrency operators, and FinTech companies globally. Since 2023, their infamous Contagious Interview campaign has utilized malware such as BeaverTail and InvisibleFerret to infiltrate systems. However, in September 2024, WaterPlum introduced a sophisticated new…
-
Germany Shuts Down eXch Over $1.9B Laundering, Seizes Euro34M in Crypto and 8TB of Data
Germany’s Federal Criminal Police Office (aka Bundeskriminalamt or BKA) has seized the online infrastructure and shutdown linked to the eXch cryptocurrency exchange over allegations of money laundering and operating a criminal trading platform.The operation was carried out on April 30, 2025, authorities said, adding they also confiscated 8 terabytes worth of data and cryptocurrency assets…
-
Malicious X ads fuel new cryptocurrency scam
First seen on scworld.com Jump to article: www.scworld.com/brief/malicious-x-ads-fuel-new-cryptocurrency-scam
-
Kurz vor Schließung: Von Bybit-Hackern genutztes Kryptoportal zerschlagen
Tags: cryptoEigentlich sollte der auf Anonymität getrimmte Krypto-Swapping-Dienst eXch zum 1. Mai schließen. Nur einen Tag zuvor hat das BKA noch zugegriffen. First seen on golem.de Jump to article: www.golem.de/news/geldwaesche-polizei-zerschlaegt-von-kriminellen-genutztes-kryptoportal-2505-196055.html
-
German operation shuts down crypto mixer eXch, seizes millions in assets
Infrastructure and digital assets from the cryptocurrency mixer eXch, believed to be involved with the laundering of funds from the ByBit hack, are now in the hands of German authorities. First seen on therecord.media Jump to article: therecord.media/exch-cryptocurrency-mixer-germany-takedown
-
Hackers Weaponizing Facebook Ads to Deploy Multi-Stage Malware Attacks
A persistent and highly sophisticated malvertising campaign on Facebook has been uncovered by Bitdefender Labs, exploiting the trust associated with major cryptocurrency exchanges to distribute multi-stage malware. This ongoing operation, active for several months as of May 2025, leverages advanced evasion techniques, mass brand impersonation, and user-tracking mechanisms to bypass conventional security defenses. By impersonating…
-
Germany takes down eXch cryptocurrency exchange, seizes servers
The Federal police in Germany (BKA) seized the server infrastructure and shut down the ‘eXch’ cryptocurrency exchange platform for alleged money laundering cybercrime proceeds. First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/germany-takes-down-exch-cryptocurrency-exchange-seizes-servers/
-
Kurz vor Schließung: Von Kryptodieben genutztes Swapping-Portal zerschlagen
Tags: cryptoEigentlich sollte der auf Anonymität getrimmte Krypto-Swapping-Dienst eXch zum 1. Mai schließen. Nur einen Tag zuvor hat das BKA noch zugegriffen. First seen on golem.de Jump to article: www.golem.de/news/geldwaesche-polizei-zerschlaegt-von-kriminellen-genutztes-kryptoportal-2505-196055.html
-
FreeDrain Phishing Attack Targets Users to Steal Financial Login Credentials
PIVOTcon, joint research by Validin and SentinelLABS has exposed FreeDrain, an industrial-scale cryptocurrency phishing operation that has been stealthily siphoning digital assets for years. This sophisticated campaign leverages search engine optimization (SEO) manipulation, free-tier web services, and intricate redirection techniques to target unsuspecting users of cryptocurrency wallets such as Trezor, MetaMask, and Ledger. Sophisticated Cryptocurrency…
-
Kurz vor Schließung: Polizei zerschlägt von Kriminellen genutztes Kryptoportal
Tags: cryptoEigentlich sollte der auf Anonymität getrimmte Krypto-Swapping-Dienst eXch zum 1. Mai schließen. Nur einen Tag zuvor hat das BKA noch zugegriffen. First seen on golem.de Jump to article: www.golem.de/news/geldwaesche-polizei-zerschlaegt-von-kriminellen-genutztes-kryptoportal-2505-196055.html
-
New Advanced Phishing Attack Exploits Discord to Target Crypto Users
Check Point Research has uncovered a sophisticated phishing campaign that leverages Discord to target cryptocurrency users. The attack redirects victims from legitimate Web3 websites to a fake Collab.Land bot and then to a phishing site, ultimately tricking them into signing malicious transactions. This campaign has been directly linked to the notorious Inferno Drainer, which has…
-
Nomad Bridge Hacker Apprehended in Connection with $190 Million Heist
Alexander Gurevich, a 47-year-old dual Russian-Israeli citizen, was arrested last Thursday at Ben-Gurion Airport while attempting to flee to Russia under a new identity. Gurevich is the primary suspect in the 2022 Nomad Bridge hack that resulted in approximately $190 million in stolen cryptocurrency, marking one of the largest blockchain security breaches that year. Israeli…
-
Crypto users embrace 2FA, lag in other protections
First seen on scworld.com Jump to article: www.scworld.com/brief/crypto-users-embrace-2fa-lag-in-other-protections
-
Cryptohack Roundup: Trump’s Crypto Wealth
Also: Mango Markets Hacker Sentenced in CSAM Case. This week, Trump’s crypto wealth, Mango Markets hacker sentenced for CSAM, Solana’s zero-day fix, French police rescued a crypto millionaire’s father from kidnappers, stolen bitcoin frozen, US FTC sued IML and Kraken spotted a North Korean job applicant. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/cryptohack-roundup-trumps-crypto-wealth-a-28351
-
Hacker Leaks Stolen LockBit Ransomware Operation Database
Exposes Details of Victims, ‘Aggressive’ Negotiations, Cryptocurrency Addresses. One year to the day after an international law enforcement operation unmasked and indicted the leader of the notorious LockBit ransomware group, a hacker has sent the group another love letter. First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/hacker-leaks-stolen-lockbit-ransomware-operation-database-a-28350
-
38,000+ FreeDrain Subdomains Found Exploiting SEO to Steal Crypto Wallet Seed Phrases
Cybersecurity researchers have exposed what they say is an “industrial-scale, global cryptocurrency phishing operation” engineered to steal digital assets from cryptocurrency wallets for several years.The campaign has been codenamed FreeDrain by threat intelligence firms SentinelOne and Validin.”FreeDrain uses SEO manipulation, free-tier web services (like gitbook.io, webflow.io, and github.io First seen on thehackernews.com Jump to article:…
-
Fake Crypto Exchange Ads on Facebook Spread Malware
Bitdefender exposes Facebook ad scams using fake crypto sites and celebrity lures to spread malware via malicious desktop… First seen on hackread.com Jump to article: hackread.com/fake-crypto-exchange-ads-facebook-spread-malware/
-
New Attack Exploits X/Twitter Ad URL Feature to Deceive Users
Silent Push Threat Analysts have recently exposed a sophisticated financial scam leveraging a vulnerability in X/Twitter’s advertising display URL feature to deceive users. This attack manipulates the platform’s URL display mechanism to present a legitimate-looking link, such as “From CNN[.]com,” while redirecting unsuspecting victims to a malicious cryptocurrency scam site impersonating Apple’s brand. This campaign,…
-
LockBit Ransomware Hacked, Insider Secrets Exposed
The data dump will likely shed light on LockBit’s recent activity and help law enforcement trace cryptocurrency transactions First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/lockbit-ransomware-hacked-insider/
-
We have reached the “severed fingers and abductions” stage of the crypto revolution
Tags: cryptoWave of crypto abductions hits Europe. First seen on arstechnica.com Jump to article: arstechnica.com/security/2025/05/we-have-reached-the-severed-fingers-and-abductions-stage-of-the-crypto-revolution/
-
Quantum supremacy: Cybersecurity’s ultimate arms race has China way in front
Tags: ai, authentication, automation, backup, banking, breach, business, china, ciso, computing, control, crypto, cryptography, cybersecurity, data, encryption, finance, government, healthcare, identity, infrastructure, jobs, military, ml, nist, risk, service, skills, technology, threat, update, vulnerability, zero-dayThe DeepSeek/Qwen factor: What we learned from recent AI advances, such as DeepSeek and Qwen, that caught the world by surprise is that China’s technology is much more advanced than anyone anticipated. I’d argue that this is a leading indicator that China’s quantum computing capabilities are also in absolute stealth-mode development and ahead of the…

