• Dapps: 16.23K
  • Blockchains: 78
  • Active users: 66.47M
  • 30d volume: $303.26B
  • 30d transactions: $879.24M

Crypto Financial Institutions Attacked through Chromium Vulnerability

user avatar

by A1

2 months ago


  1. Details of the Attack
  2. Other Malware Used
  3. Other North Korean Hacks

  4. North Korean hackers, known as Citrine Sleet, exploited a severe zero-day vulnerability in the Chromium browser to attack crypto financial institutions.

    Details of the Attack

    Citrine Sleet targeted financial institutions and crypto entities to steal digital assets. By creating fake crypto trading platforms, the hackers tricked victims into downloading malicious software, such as the AppleJeus trojan, which siphons off crypto funds, according to Microsoft. This flaw allowed attackers to execute remote code, giving them control over infected systems. Microsoft identified the attack on August 19, and it has been linked to efforts targeting the crypto industry. The vulnerability, tracked as CVE-2024-7971, was a type of confusion flaw in Chromium’s V8 JavaScript engine, permitting attackers to bypass browser security and execute code within the browser’s sandbox, according to Microsoft. In other words, the Chromium browser, which is the foundation for browsers like Google Chrome and Microsoft Edge, had a severe zero-day vulnerability. This means hackers discovered a serious flaw in Chromium before its own developers did. Hackers could use this flaw for malicious intentions — especially against crypto financial institutions. Google addressed this vulnerability with a patch released on August 21.

    Other Malware Used

    Alongside CVE-2024-7971, the hackers deployed malware titled ‘FudModule’ rootkit, which was designed to manipulate Windows security measures, according to Microsoft. This rootkit was previously associated with Diamond Sleet, another North Korean group, suggesting that the same advanced tools are being shared among various North Korean threat actors. Microsoft stated that Diamond Sleet had been observed using FudModule since October 2021.

    Other North Korean Hacks

    On August 15, cybersecurity expert ZachXBT uncovered a sophisticated North Korean scheme involving IT workers posing as crypto developers. This operation resulted in a $1.3 million theft from a project’s treasury and revealed over 25 compromised crypto projects. The stolen funds were laundered through multiple transactions, including bridging from Solana to Ethereum and depositing into Tornado Cash. Investigations connected these activities to a network of 21 developers and traced funds back to North Korean IT workers.

    The crypto sector, already a frequent target of cyber attacks, faces increased risks as these sophisticated threat actors exploit vulnerabilities in widely used software. Microsoft advised users and organizations to update their systems promptly, use secure and updated web browsers, and enable advanced security features like Microsoft Defender to safeguard against such threats.

0

Share

Other news

NFT Market Gains Momentum: Sales Surge 16.3% to $96.1 Million

NFT sales volume increased by 16.3% to $96.1M. Ethereum leads with $31.19M.

user avatar

a few seconds ago

Toncoin and Notcoin Show Prominent Growth Amid Positive Market Sentiments

Toncoin and Notcoin altcoins have shown significant growth driven by overall positive market sentiments.

user avatar

a few seconds ago

Ethereum: Resilience to Major Sell-Offs and Growth Prospects

Despite a major sell-off, Ethereum shows resilience and potential growth towards $6,000.

user avatar

a minute ago

Analyzing Dogen's Potential to Surge to $18 Amidst Crypto Market Trends

Potential surge of Dogen to $18 and prospects for Ripple and Shiba Inu: What's next for the crypto community?

user avatar

22 minutes ago

BlackRock Posts Largest Daily Ether ETF Inflow Since August

BlackRock's Ether ETF sees $60.3M inflows amid Ethereum price surge.

user avatar

22 minutes ago

XYZVerse: A Breakthrough in the Meme Coin World?

Discover XYZVerse, a new memecoin with the potential to surpass popular rivals, offering a unique platform with strong growth potential.

user avatar

22 minutes ago

dapp expert logo
© 2020-2024. DappExpert. All rights reserved.
© 2020-2024. DappExpert. All rights reserved.

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.