COLDRIVER using new malware to steal from Western targets — Google

By: the crypto news wire|2025/05/08 04:15:02
0
Share
copy
The malware, LOSTKEYS, can steal files from hard-coded extensions and directories, according to Google. Threat group COLDRIVER is using new malware to steal documents from Western targets, according to a May 7 report from Google Threat Intelligence. The malware, called LOSTKEYS, shows the evolution of the group from credential phishing to more sophisticated attacks. According to the Google report, the new malware is installed through four steps. The process involves a “lure website” with a fake CAPTCHA, a PowerShell script downloaded to the user’s clipboard, some device evasion, and retrieval of the final payload. Lastly, the malware is installed. LOSTKEYS is capable of stealing files from extensions and directories. It can also send system information and running processes back to COLDRIVER. The address from which the parts of the attack come is “165.227.148[.]68” according to Google. Read more

You may also like

Electric Capital: Tracking 501 types of yield-generating RWA assets, we discovered these patterns

From private credit to GPU leasing, from catastrophe bonds to music royalties, the range of tokenizable assets is much richer than the market perceives. However, the biggest challenge is not technology, but distribution—existing RWAs heavily rely on a few large deployers, and the concentration of ri...

Those who are cut off by AI will not disappear; they will become the creators of the next round of the economy

AI is not eliminating people, but rather the superstition of "stable careers": those who break the shackles of organizations and understand how to rewrite themselves are ushering in the ultimate revenge.

Stablecoins reshaping cross-border payments in Asia? Strategic panorama and investment opportunity analysis

With the popularity of local payment channels, the costs of traditional transfers have been significantly reduced, and the fees are now mainly concentrated in the domestic settlement phase, which is precisely what stablecoins cannot bypass.

Zuckerberg is building an AI agent to help him as CEO

Zuckerberg is reported to be personally developing a "CEO proxy" to accelerate information acquisition and reduce management layers.

Bloomberg: Swiss Private Bank Old Guard Rifts, Is Bitcoin the Spark?

For Marc Syz, this is both a bet on the digital asset track and a complete break from Switzerland's long-established private banking dynasty.

Zuckerberg is building an AI assistant to help him be CEO

Mark Zuckerberg has been reportedly personally developing a "CEO Proxy" to speed up information flow and reduce management layers.

Popular coins

Latest Crypto News

Read more