Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

Unexpected Statements from Iran in the U.S.-Iran War – “Under the Current Circumstances, the Strait of Hormuz Cannot Remain Open”

April 20, 2026

Ondo Executive Debunks Magical Thinking for Illiquid Assets

April 20, 2026

Why Bitcoin’s $75K rebound is a double-edged sword – 3 reasons why!

April 20, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»Crypto Wallets Under Attack By DoubleFinger Malware
Crypto Wallets Under Attack By DoubleFinger Malware
Security and Privacy

Crypto Wallets Under Attack By DoubleFinger Malware

June 13, 2023No Comments2 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

Cryptocurrency wallets have been targeted by a new malware dubbed “DoubleFinger.”

The findings come from security experts at Kaspersky, who discussed the threat in a blog post published on Monday.

“As the value and popularity of cryptocurrencies continue to rise, so does the interest of cybercriminals,” commented Sergey Lozhkin, a lead security researcher at Kaspersky’s Global Research and Analysis Team (GReAT). 

The malware discovered by Kaspersky employs a multistage attack method that resembles an advanced persistent threat (APT). It starts with a malicious email attachment containing a PIF file, which triggers a chain of events.

“The group behind the DoubleFinger loader and GreetingGhoul malware stands out as a sophisticated actor with high skills in crimeware development,” Lozhkin added.

In the first stage, DoubleFinger downloads encrypted components from the image-sharing platform Imgur.com disguised as a PNG file. These components include a loader for the second stage, a legitimate java.exe file and another PNG file for later stages. 

DoubleFinger then executes its loader, bypassing security software, and launches subsequent stages.

In the fourth stage, DoubleFinger utilizes a technique called Process Doppelgänging to replace a legitimate process with a modified one, housing the fifth-stage payload. 

Finally, the GreetingGhoul crypto stealer is installed and scheduled to run daily, targeting the victim’s crypto wallets. According to Kaspersky’s technical write-up, GreetingGhoul consists of two parts. 

The first detects crypto-wallet applications in the system and steals valuable data such as private keys and seed phrases. The second overlays the interface of cryptocurrency applications, intercepting user input and enabling cyber-criminals to control and withdraw funds.

Some variations of DoubleFinger install the notorious remote access Trojan Remcos, granting cyber-criminals complete control of the infected system.

See also  Turns Out Crypto Tribalism Is Useless…

Read more on this Trojan: Remcos Trojan Returns to Most Wanted Malware List After Ukraine Attacks

To protect crypto wallets, Kaspersky recommends vigilance against scams, diversifying wallet usage, being aware of cold wallet vulnerabilities and purchasing hardware wallets from official sources, among others.

“Protecting crypto wallets is a shared responsibility between the wallet providers, individuals, and the broader cryptocurrency community,” Lozhkin added.

“By staying vigilant, implementing strong security measures, and staying informed about the latest threats, we can mitigate the risks and ensure the safety of our valuable digital assets.”

Kaspersky’s blog post comes days after two Russian nationals were charged with stealing millions from defunct crypto exchange Mt Gox.

Source link

Attack Crypto DoubleFinger Malware wallets
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Hack at Vercel sends crypto developers scrambling to lock down API keys

April 20, 2026

SEC charges Donald Basile in $16M crypto fraud tied to ‘insured’ token

April 20, 2026

Patrick Witt Reveals White House Stepped In to Save Crypto Bill

April 19, 2026

Previewing Consensus’ Policy Summit: State of Crypto

April 19, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

Aave GHO Stablecoin Supply Nears $1.50 Million in 24 Hours

July 16, 2023

Millennials and Generation Z Could Decide 2024 ‘Bitcoin Election,’ According to Crypto Giant Grayscale

August 6, 2023

OpenSea Just Changed Its Royalty Policy (Again), and Yikes!

August 19, 2023

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

Unexpected Statements from Iran in the U.S.-Iran War – “Under the Current Circumstances, the Strait of Hormuz Cannot Remain Open”

April 20, 2026

Ondo Executive Debunks Magical Thinking for Illiquid Assets

April 20, 2026

Why Bitcoin’s $75K rebound is a double-edged sword – 3 reasons why!

April 20, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$74,824.00-0.59%
  • ethereumEthereum(ETH)$2,288.09-1.51%
  • tetherTether(USDT)$1.00-0.02%
  • rippleXRP(XRP)$1.41-1.05%
  • binancecoinBNB(BNB)$624.300.39%
  • usd-coinUSDC(USDC)$1.00-0.01%
  • solanaSolana(SOL)$84.61-0.64%
  • tronTRON(TRX)$0.3314540.58%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.040.00%
  • dogecoinDogecoin(DOGE)$0.094302-0.24%