Thread Rating:

EvenBob
EvenBob
  • Threads: 443
  • Posts: 30503
Joined: Jul 18, 2010
March 16th, 2025 at 1:53:51 PM permalink
Quote: Tanko



New coins are dropping every day

https://coinmarketcap.com/new/
link to original post



There are 500 different cryptocurrencies on that list and that's not all of them. But it's not a scam, it's not a commodity, it's not a collectible, it's not a Ponzi scheme, they're all legitimate currencies. What a joke. Every single one of them is just a way for some people to get rich and other people to get poorer.
"It's not called gambling if the math is on your side."
rxwine
rxwine
  • Threads: 226
  • Posts: 13098
Joined: Feb 28, 2010
March 18th, 2025 at 7:41:41 PM permalink
Quote:

Microsoft Incident Response has identified a new remote access trojan (RAT) that is capable of stealing a wide variety of information from your computer from passwords and cryptocurrency wallet information to operating system details, device identifiers, and even camera presence data.

The most sophisticated – and perhaps the most alarming – feature of this new malware is its ability to use watchdog threads to ensure self-reinstatement if removed. Basically, it can reinstall itself.

As reported by BleepingComptuer, the StilachiRAT is used to steal digital wallet data from multiple cryptocurrency wallets including Coinbase Wallet, Phantom, Trust Wallet, Metamask, OKX Wallet, Bitget Wallet and up to 20 others.

The malware also has sophisticated reconnaissance abilities and is able to steal information from an infected PC including credentials stored in your browser, clipboard data, system information, hardware identifiers, camera presence, active Remote Desktop Protocol (RDP) sessions, and running GUI-based applications.

StilachiRAT can extract credentials from Google Chrome's local state file using Windows APIs, monitor clipboard activity for password information and crypto keys and track active windows or applications. It uses the Windows service control manager (SCM) to maintain persistence and reinstalls it automatically when the malware notices its binaries are no longer active.

t the same time, StilachiRAT can monitor active RDP sessions by impersonating logged in users. It does this by capturing information from foreground windows then cloning security tokens. This allows attackers to move laterally through a victim’s network after the malware has been deployed on RDP servers that usually host admin sessions.

StilachiRAT can also evade detection and has anti-forensics features, such as the ability to clear event logs and check for signs that its running in a sandbox in order to block malware analysis attempts. If its tricked into running in a sandbox, the RAT’s API calls are encoded to slow down further analysis.

Sanitized for Your Protection
AutomaticMonkey
AutomaticMonkey 
  • Threads: 10
  • Posts: 567
Joined: Sep 30, 2024
March 18th, 2025 at 7:50:03 PM permalink
Quote: rxwine

Quote:

Microsoft Incident Response has identified a new remote access trojan (RAT) that is capable of stealing a wide variety of information from your computer from passwords and cryptocurrency wallet information to operating system details, device identifiers, and even camera presence data.

The most sophisticated – and perhaps the most alarming – feature of this new malware is its ability to use watchdog threads to ensure self-reinstatement if removed. Basically, it can reinstall itself.

As reported by BleepingComptuer, the StilachiRAT is used to steal digital wallet data from multiple cryptocurrency wallets including Coinbase Wallet, Phantom, Trust Wallet, Metamask, OKX Wallet, Bitget Wallet and up to 20 others.

The malware also has sophisticated reconnaissance abilities and is able to steal information from an infected PC including credentials stored in your browser, clipboard data, system information, hardware identifiers, camera presence, active Remote Desktop Protocol (RDP) sessions, and running GUI-based applications.

StilachiRAT can extract credentials from Google Chrome's local state file using Windows APIs, monitor clipboard activity for password information and crypto keys and track active windows or applications. It uses the Windows service control manager (SCM) to maintain persistence and reinstalls it automatically when the malware notices its binaries are no longer active.

t the same time, StilachiRAT can monitor active RDP sessions by impersonating logged in users. It does this by capturing information from foreground windows then cloning security tokens. This allows attackers to move laterally through a victim’s network after the malware has been deployed on RDP servers that usually host admin sessions.

StilachiRAT can also evade detection and has anti-forensics features, such as the ability to clear event logs and check for signs that its running in a sandbox in order to block malware analysis attempts. If its tricked into running in a sandbox, the RAT’s API calls are encoded to slow down further analysis.


link to original post



Microsoft? Windows? Google? Chrome?

I'm sorry, these are unfamiliar terms in my digital life. Literally nothing runs on my machines until I type "sudo" and a really long password.
DRich
DRich
  • Threads: 91
  • Posts: 13624
Joined: Jul 6, 2012
March 19th, 2025 at 5:13:51 AM permalink
Quote: AutomaticMonkey



Microsoft? Windows? Google? Chrome?

I'm sorry, these are unfamiliar terms in my digital life. Literally nothing runs on my machines until I type "sudo" and a really long password.
link to original post



What is "sudo"? I am not familiar with that.
You can't know everything, but you can know anything.
Dieter
Administrator
Dieter
  • Threads: 17
  • Posts: 6669
Joined: Jul 23, 2014
March 19th, 2025 at 6:23:26 AM permalink
Quote: DRich

Quote: AutomaticMonkey



Microsoft? Windows? Google? Chrome?

I'm sorry, these are unfamiliar terms in my digital life. Literally nothing runs on my machines until I type "sudo" and a really long password.
link to original post



What is "sudo"? I am not familiar with that.
link to original post



sudo is like su. The difference is that sudo executes a specified command ("sudo vi /etc/passwd" maybe), where su opens a shell.
May the cards fall in your favor.
OnceDear
OnceDear
  • Threads: 64
  • Posts: 7578
Joined: Jun 1, 2014
March 19th, 2025 at 6:29:18 AM permalink
Quote: DRich



What is "sudo"? I am not familiar with that.
link to original post



It's super user do in Linux command line
Psalm 25:16 Turn to me and be gracious to me, for I am lonely and afflicted. Proverbs 18:2 A fool finds no satisfaction in trying to understand, for he would rather express his own opinion.
DRich
DRich
  • Threads: 91
  • Posts: 13624
Joined: Jul 6, 2012
March 19th, 2025 at 8:37:05 AM permalink
Quote: Dieter

Quote: DRich

Quote: AutomaticMonkey



Microsoft? Windows? Google? Chrome?

I'm sorry, these are unfamiliar terms in my digital life. Literally nothing runs on my machines until I type "sudo" and a really long password.
link to original post



What is "sudo"? I am not familiar with that.
link to original post



sudo is like su. The difference is that sudo executes a specified command ("sudo vi /etc/passwd" maybe), where su opens a shell.
link to original post



Thank you, I assumed it was an application he was running.
You can't know everything, but you can know anything.
billryan
billryan 
  • Threads: 280
  • Posts: 18598
Joined: Nov 2, 2009
March 21st, 2025 at 11:11:03 AM permalink
The CEO and Founder of cryptocurrency market maker Gotbit pleaded guilty to financial misappropriation and market manipulation. He performed " wash sales" to give the impression of a much higher volume. Thinly traded securities can be difficult to unload in a timely fashion, so they tend to sell at a discount. The opposite is true for heavily traded ones.
He is the third " market maker" arrested this year.
The older I get, the better I recall things that never happened
AxelWolf
AxelWolf
  • Threads: 171
  • Posts: 22884
Joined: Oct 10, 2012
May 21st, 2025 at 8:44:03 PM permalink
BitCoin just hit 111k, I do believe that's the highest it's ever been(?)
♪♪Now you swear and kick and beg us That you're not a gamblin' man Then you find you're back in Vegas With a handle in your hand♪♪ Your black cards can make you money So you hide them when you're able In the land of casinos and money You must put them on the table♪♪ You go back Jack do it again roulette wheels turinin' 'round and 'round♪♪ You go back Jack do it again♪♪
AutomaticMonkey
AutomaticMonkey 
  • Threads: 10
  • Posts: 567
Joined: Sep 30, 2024
Thanked by
camapl
May 21st, 2025 at 9:11:24 PM permalink
Quote: AxelWolf

BitCoin just hit 111k, I do believe that's the highest it's ever been(?)
link to original post



Yes, yes it is. That's even higher than I've ever been.
camapl
camapl
  • Threads: 8
  • Posts: 612
Joined: Jun 22, 2010
May 22nd, 2025 at 8:46:18 AM permalink
Quote: AutomaticMonkey

Quote: AxelWolf

BitCoin just hit 111k, I do believe that's the highest it's ever been(?)
link to original post



Yes, yes it is. That's even higher than I've ever been.
link to original post



Lightweight! 😂😂😂
It’s a dog eat dog world. …Or maybe it’s the other way around!
rxwine
rxwine
  • Threads: 226
  • Posts: 13098
Joined: Feb 28, 2010
Thanked by
MichaelBluejay
May 26th, 2025 at 5:18:49 AM permalink
Quote:

A man was arrested Friday after being accused of kidnapping an Italian tourist and torturing him for weeks inside a Manhattan home in a bid to steal the alleged victim’s bitcoin, according to officials, law enforcement sources with direct knowledge of the investigation and a criminal complaint.



I assume bitcoin is more attractive for this sort of thing, because you can transfer it in a way without a weak point like an atm or bank. Traditional kidnapping and extortion still left one with some transfer point for the cash where there was greater risk. Other than that, you have to buy stuff online and then sell it,
Sanitized for Your Protection
DRich
DRich
  • Threads: 91
  • Posts: 13624
Joined: Jul 6, 2012
May 26th, 2025 at 8:41:21 AM permalink
Quote: rxwine

Quote:

A man was arrested Friday after being accused of kidnapping an Italian tourist and torturing him for weeks inside a Manhattan home in a bid to steal the alleged victim’s bitcoin, according to officials, law enforcement sources with direct knowledge of the investigation and a criminal complaint.



I assume bitcoin is more attractive for this sort of thing, because you can transfer it in a way without a weak point like an atm or bank. Traditional kidnapping and extortion still left one with some transfer point for the cash where there was greater risk. Other than that, you have to buy stuff online and then sell it,
link to original post



Bitcoin is so easily traceable today by enforcement so I wouldn't use it for criminal activity.
You can't know everything, but you can know anything.
MichaelBluejay
MichaelBluejay
  • Threads: 91
  • Posts: 1775
Joined: Sep 17, 2010
May 26th, 2025 at 9:06:00 AM permalink
You wouldn't, but lots of criminals don't know that. Hence the recent torture of the Italian tourist.
I run Easy Vegas ( https://easy.vegas )
AutomaticMonkey
AutomaticMonkey 
  • Threads: 10
  • Posts: 567
Joined: Sep 30, 2024
May 26th, 2025 at 11:50:36 AM permalink
This is not the first time someone has been tortured for Bitcoin. We who deal in it are well aware of this method of obtaining Bitcoin. The only defense is to make it too risky to attempt.

But I think everyone involved in this knew the limitations of Bitcoin and the torturer supposedly has a bag of 1000 BTC. So I would assume he knows how it can be traced and also knows how to use it to avoid being traced.

It's rumored that there was an existing sadomasochistic relationship between these people as well as drugs which would explain how experienced crypto traders would get into a position where this would happen to begin with.
rxwine
rxwine
  • Threads: 226
  • Posts: 13098
Joined: Feb 28, 2010
Thanked by
MichaelBluejay
June 2nd, 2025 at 7:32:31 AM permalink
Quote:

Taiwan-based cryptocurrency exchange BitoPro has confirmed a security breach resulting in the alleged theft of $11.5 million in digital assets.

The revelation came shortly after on-chain investigator ZachXBT flagged unusual wallet activity on Monday, June 2, raising questions about why the exchange did not alert users sooner.



Why are exchanges still being hacked? If you're supposed to be protecting significant assets, seems like you'd have several layers of security. And could easily afford it.
Sanitized for Your Protection
AutomaticMonkey
AutomaticMonkey 
  • Threads: 10
  • Posts: 567
Joined: Sep 30, 2024
June 2nd, 2025 at 11:35:19 AM permalink
Quote: rxwine

Quote:

Taiwan-based cryptocurrency exchange BitoPro has confirmed a security breach resulting in the alleged theft of $11.5 million in digital assets.

The revelation came shortly after on-chain investigator ZachXBT flagged unusual wallet activity on Monday, June 2, raising questions about why the exchange did not alert users sooner.



Why are exchanges still being hacked? If you're supposed to be protecting significant assets, seems like you'd have several layers of security. And could easily afford it.
link to original post



They're not being hacked. All the major exchange thefts have been inside jobs, as far as I know.
DRich
DRich
  • Threads: 91
  • Posts: 13624
Joined: Jul 6, 2012
Thanked by
MichaelBluejay
June 2nd, 2025 at 6:26:08 PM permalink
Quote: rxwine

Quote:

Taiwan-based cryptocurrency exchange BitoPro has confirmed a security breach resulting in the alleged theft of $11.5 million in digital assets.

The revelation came shortly after on-chain investigator ZachXBT flagged unusual wallet activity on Monday, June 2, raising questions about why the exchange did not alert users sooner.



Why are exchanges still being hacked? If you're supposed to be protecting significant assets, seems like you'd have several layers of security. And could easily afford it.
link to original post



Just about any company or piece of software can be hacked if people invest enough time and ingenuity.
You can't know everything, but you can know anything.
rxwine
rxwine
  • Threads: 226
  • Posts: 13098
Joined: Feb 28, 2010
Thanked by
MichaelBluejay
June 3rd, 2025 at 8:47:41 AM permalink
Quote: DRich

Quote: rxwine

Quote:

Taiwan-based cryptocurrency exchange BitoPro has confirmed a security breach resulting in the alleged theft of $11.5 million in digital assets.

The revelation came shortly after on-chain investigator ZachXBT flagged unusual wallet activity on Monday, June 2, raising questions about why the exchange did not alert users sooner.



Why are exchanges still being hacked? If you're supposed to be protecting significant assets, seems like you'd have several layers of security. And could easily afford it.
link to original post



Just about any company or piece of software can be hacked if people invest enough time and ingenuity.
link to original post



I have yet to wake up and find my entire bank account gone. Perhaps no one is trying hard enough.
Sanitized for Your Protection
DRich
DRich
  • Threads: 91
  • Posts: 13624
Joined: Jul 6, 2012
Thanked by
MichaelBluejay
June 3rd, 2025 at 11:27:50 AM permalink
Quote: rxwine

Quote: DRich

Quote: rxwine

Quote:

Taiwan-based cryptocurrency exchange BitoPro has confirmed a security breach resulting in the alleged theft of $11.5 million in digital assets.

The revelation came shortly after on-chain investigator ZachXBT flagged unusual wallet activity on Monday, June 2, raising questions about why the exchange did not alert users sooner.



Why are exchanges still being hacked? If you're supposed to be protecting significant assets, seems like you'd have several layers of security. And could easily afford it.
link to original post



Just about any company or piece of software can be hacked if people invest enough time and ingenuity.
link to original post



I have yet to wake up and find my entire bank account gone. Perhaps no one is trying hard enough.
link to original post



I know that my bank account wouldn't justify someone spending more than a few hours to break into.
You can't know everything, but you can know anything.
  • Jump to: