Bitcoin
Bitcoin (BTC)
$65,702.00 0.055
Bitcoin price
Ethereum
Ethereum (ETH)
$1,768.96 2.86214
Ethereum price
XRP
XRP (XRP)
$1.22 2.73656
XRP price
BNB
BNB (BNB)
$611.92 -0.73713
BNB price
Solana
Solana (SOL)
$72.94 2.48606
Solana price
Hyperliquid
Hyperliquid (HYPE)
$68.37 5.68996
Hyperliquid price
Cardano
Cardano (ADA)
$0.175989 -2.53198
Cardano price
Chainlink
Chainlink (LINK)
$8.18 -0.00881
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.077412 0.46836
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.69 -4.78072
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001332 -8.93034
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$65,702.00 0.055
Bitcoin price
Ethereum
Ethereum (ETH)
$1,768.96 2.86214
Ethereum price
XRP
XRP (XRP)
$1.22 2.73656
XRP price
BNB
BNB (BNB)
$611.92 -0.73713
BNB price
Solana
Solana (SOL)
$72.94 2.48606
Solana price
Hyperliquid
Hyperliquid (HYPE)
$68.37 5.68996
Hyperliquid price
Cardano
Cardano (ADA)
$0.175989 -2.53198
Cardano price
Chainlink
Chainlink (LINK)
$8.18 -0.00881
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.077412 0.46836
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.69 -4.78072
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001332 -8.93034
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$65,702.00 0.055
Bitcoin price
Ethereum
Ethereum (ETH)
$1,768.96 2.86214
Ethereum price
XRP
XRP (XRP)
$1.22 2.73656
XRP price
BNB
BNB (BNB)
$611.92 -0.73713
BNB price
Solana
Solana (SOL)
$72.94 2.48606
Solana price
Hyperliquid
Hyperliquid (HYPE)
$68.37 5.68996
Hyperliquid price
Cardano
Cardano (ADA)
$0.175989 -2.53198
Cardano price
Chainlink
Chainlink (LINK)
$8.18 -0.00881
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.077412 0.46836
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.69 -4.78072
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001332 -8.93034
Asteroid Shiba price
Bitcoin
Bitcoin (BTC)
$65,702.00 0.055
Bitcoin price
Ethereum
Ethereum (ETH)
$1,768.96 2.86214
Ethereum price
XRP
XRP (XRP)
$1.22 2.73656
XRP price
BNB
BNB (BNB)
$611.92 -0.73713
BNB price
Solana
Solana (SOL)
$72.94 2.48606
Solana price
Hyperliquid
Hyperliquid (HYPE)
$68.37 5.68996
Hyperliquid price
Cardano
Cardano (ADA)
$0.175989 -2.53198
Cardano price
Chainlink
Chainlink (LINK)
$8.18 -0.00881
Chainlink price
POL (ex-MATIC)
POL (ex-MATIC) (POL)
$0.077412 0.46836
POL (ex-MATIC) price
Gram (prev. Toncoin)
Gram (prev. Toncoin) (GRAM)
$1.69 -4.78072
Gram (prev. Toncoin) price
Asteroid Shiba
Asteroid Shiba (ASTEROID)
$0.0001332 -8.93034
Asteroid Shiba price

New phishing Exodus campaign targets Chinese crypto investors

Dorian Batycka
Edited by
News
New phishing Exodus campaign targets Chinese crypto investors

Cybersecurity analysts have uncovered a new phishing campaign targeting crypto users by deploying FatalRAT alongside Clipper and Keylogger malware.

Cyble Research and Intelligence Labs have uncovered a novel phishing campaign targeting Chinese crypto investors and organizations, with an emphasis on users of the Exodus crypto wallet.

In a blog article, the cybersecurity experts revealed that unidentified threat actors have employed a fake website designed to mimic the interface of the Exodus crypto wallet in an effort to trick victims into sharing their private information without realizing it.

New phishing Exodus campaign targets Chinese crypto investors - 2

Once unsuspecting users are lured into downloading the software disguised as genuine Exodus installers from the phishing site, they inadvertently install FatalRAT, a type of malware that hackers use to gain control over someone’s computer remotely. Moreover, the program also lures users by starting the Exodus installation, making them think it’s real, while actually diverting their attention to hide its true intentions.

Cyble notes that in addition to the Exodus program, the installer also deploys other malicious components, such as Clipper and Keylogger, programs designed to intercept and modify clipboard data on a victim’s computer. The analysts emphasized that this time, the hackers have employed new .dll side-loading techniques as part of their strategy to evade detection. While it’s not clear how big the attack is, the hackers appear to be targeting Chinese crypto investors and companies with Chinese-language installers, Cyble noted.