Close Menu
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
What's Hot

FCA Clears Asset Managers to Run Funds Onchain Under Existing Rules

May 3, 2026

A breakthrough in blockchain property transactions

May 3, 2026

Stellar’s correction is here – But THESE 2 trends still back XLM bulls

May 3, 2026
Facebook X (Twitter) Instagram
  • Contact
  • Privacy Policy
  • Terms & Conditions
Facebook X (Twitter) Instagram
CryptoPulseDaily.com
  • Latest News
    • Market
    • Altcoins
    • Legal and Regulatory
  • Tech
    • Blockchain
    • Security and Privacy
  • Web 3
    • Web3 News
    • NFTs
    • Gaming
  • Learn
    • Education
    • Investments
    • Staking
    • Wallets and Exchanges
  • ICOs
  • Mining
  • Crypto Tools
    • Exchange Tool
  • Shop
CryptoPulseDaily.com
Home»Security and Privacy»New Spyware Uses Telegram to Communicate with Threat Actors
New Spyware Uses Telegram to Communicate with Threat Actors
Security and Privacy

New Spyware Uses Telegram to Communicate with Threat Actors

August 1, 2023No Comments3 Mins Read
Share
Facebook Twitter LinkedIn Pinterest Email

A new piece of spyware, that uses the app Telegram for exfiltration, is for sale on the black market.  

Trojan-delivered Masad Stealer and Clipper was clocked by researchers at Juniper Threat Labs. The spyware uses Telegram as a command and control (CnC) channel to cloak itself in a veil of anonymity. 

Mounir Hahad, head of Juniper Threat Labs told Infosecurity Magazine: “This kind of malware that uses Telegram for exfiltration is not common at all. Most malware would try to hide exfiltrated data in secured web communication like https.”

He went on to say that Telegram users would not be affected by Masad Stealer. 

“This will not use people’s Telegram account. It just uses the Telegram infrastructure to communicate with threat actors controlled Telegram bots,” said Hahad.

After installing itself on a computer, Masad Stealer busies itself collecting information stored on the system, such as browser passwords, autofill browser field data, and desktop files. The spyware also automatically replaces cryptocurrency wallets from the clipboard with its own.

Other information vulnerable to an attack perpetrated through Masad Stealer includes credit card browser data, FileZilla files, steam files, browser cookies, PC and system information, and installed software and processes. 

Researchers at Juniper said: “Masad Stealer sends all of the information it collects – and receives commands from – a Telegram bot controlled by the threat actor deploying that instance of Masad. Because Masad is being sold as off-the-shelf malware, it will be deployed by multiple threat actors who may or may not be the original malware writers.”

Masad Stealer is being advertised for sale in several hack forums, making it an active and ongoing threat. Buyers can pick up a variety of versions, ranging from a free one to a premium package costing $85, with each tier of the malware offering different features.

See also  Everything You Need to Know About Gaming on Telegram

Hahad said: “This malware is offered for sale, so I suspect they will have a handful of clients. But more importantly, the technique is available to more sophisticated and better funded groups who will develop their own malware using this technique.”

Masad Stealer is written using Autoit scripts and then compiled into an executable Windows file. Most of the samples discovered by Juniper were 1.5 MiB in size; however, the spyware has also been strutting around in larger executables and has been spotted bundled into other software.

Telegram, which celebrated its sixth birthday in August, has over 200 million monthly active users.  The app claims on its website to be “more secure than mass market messengers like WhatsApp and Line” and offers anyone who can decipher a Telegram message up to $300,000 in prize money. 

Source link

Actors Communicate Spyware Telegram threat
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Digital Asset Security Moves Beyond Keys as Bitgo Adds 5-Layer Checks

May 1, 2026

Defillama Confirms April 2026 as Crypto’s Most-Hacked Month With 30 Incidents

May 1, 2026

Malicious npm Dependency Linked to AI Assisted Commit Targets Crypto W

April 29, 2026

North Korean Hackers Target Crypto Firms with ClickFix and Zoom Lures

April 28, 2026
Add A Comment
Leave A Reply Cancel Reply

Top Posts

OpenSSH Trojan Campaign Targets IoT and Linux Systems

June 23, 2023

Riot Platforms power strategy reaps $31.7M in Texas energy credits

September 7, 2023

Democratic National Committee Chair Met With Bitcoin Miner Marathon, Exec Says

August 20, 2024

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

Our mission is to develop a community of people who try to make financially sound decisions. The website strives to educate individuals in making wise choices about Crypto, ICOs, Web3, Blockchain and more.

We're social. Connect with us:

Facebook X (Twitter) Instagram Pinterest YouTube
Top Insights

FCA Clears Asset Managers to Run Funds Onchain Under Existing Rules

May 3, 2026

A breakthrough in blockchain property transactions

May 3, 2026

Stellar’s correction is here – But THESE 2 trends still back XLM bulls

May 3, 2026
Get Informed

Subscribe to Updates

Get the latest creative news From Crypto Daily Pulse directly in your Inbox!

  • Contact
  • Privacy Policy
  • Terms & Conditions
© 2026 Crypto Pulse Daily - All rights reserved.

Type above and press Enter to search. Press Esc to cancel.

Cleantalk Pixel
  • bitcoinBitcoin(BTC)$78,416.000.17%
  • ethereumEthereum(ETH)$2,308.200.15%
  • tetherTether(USDT)$1.000.01%
  • rippleXRP(XRP)$1.390.29%
  • binancecoinBNB(BNB)$618.760.52%
  • usd-coinUSDC(USDC)$1.000.01%
  • solanaSolana(SOL)$83.910.09%
  • tronTRON(TRX)$0.3386202.61%
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.040.71%
  • dogecoinDogecoin(DOGE)$0.1080640.41%