• Latest
  • Trending
  • All
  • Trading & Investing
  • Strategies & Techniques
  • Risk Management & Portfolio Allocation
  • Technical Analysis Tools & Indicators
  • Fundamental Analysis & Research
  • Blockchain Technology
  • DeFi & NFTs
Inferno Malware disguised as Coinbase drained  million from 137,000 victims

Inferno Malware disguised as Coinbase drained $87 million from 137,000 victims

July 7, 2024
SEI pricing forecast 2025: Short-term bearish, long-term bullish?

SEI pricing forecast 2025: Short-term bearish, long-term bullish?

May 29, 2025
Market share of centralized crypto exchanges, according to trading volume

Market share of centralized crypto exchanges, according to trading volume

May 27, 2025
Buyer and Seller Behavior: The Fundamental of Bitcoin Analyze

Buyer and Seller Behavior: The Fundamental of Bitcoin Analyze

May 25, 2025
Тор-10 best crypto indicators to learn

Тор-10 best crypto indicators to learn

May 25, 2025
The Ultimate Crypto Tools Pack – Part 2

The Ultimate Crypto Tools Pack – Part 2

May 24, 2025
Stx bullish recovery to continue

Stx bullish recovery to continue

May 24, 2025
Japan’s central bank digital currency should go big, not go home

Japan’s central bank digital currency should go big, not go home

May 23, 2025
What is it and 5 ways to avoid it

What is it and 5 ways to avoid it

May 23, 2025
X spaces repeat with bluhale

X spaces repeat with bluhale

May 5, 2025
Build Meowverse in Telegram Play-to-Aarn Mini Game

Build Meowverse in Telegram Play-to-Aarn Mini Game

April 4, 2025
What is the future of generative AI?

What is the future of generative AI?

April 1, 2025
How traders stay in front of the curve

How traders stay in front of the curve

March 26, 2025
  • Home
  • Trading & Investing
    • Risk Management & Portfolio Allocation
    • Strategies & Techniques
    • Fundamental Analysis & Research
    • Technical Analysis Tools & Indicators
  • Crypto News & Analysis
    • Bitcoin
    • Market Overview & Trends
    • Altcoins
    • Technical Analysis & Charting
  • DeFi & NFTs
    • Decentralized Finance (DeFi)
    • Non-Fungible Tokens (NFTs)
    • Exchange Hacks & Security Breaches
    • Wallet Hacking & Phishing Attacks
  • Blockchain Technology
    • Supply Chain & Logistics Solutions
    • Enterprise Adoption & Applications
    • Healthcare & Medical Innovations
    • Energy & Sustainability Initiatives
Friday, May 30, 2025
  • Login
UnCirculars
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
    • Home – Layout 4
    • Home – Layout 5
  • Crypto News & Analysis
    • All
    • Adoption & Use Cases
    • Altcoins
    • Bitcoin
    • Market Overview & Trends
    • On-Chain Data & Metrics
    • Security & Scams
    • Technical Analysis & Charting
    SEI pricing forecast 2025: Short-term bearish, long-term bullish?

    SEI pricing forecast 2025: Short-term bearish, long-term bullish?

    Market share of centralized crypto exchanges, according to trading volume

    Market share of centralized crypto exchanges, according to trading volume

    Buyer and Seller Behavior: The Fundamental of Bitcoin Analyze

    Buyer and Seller Behavior: The Fundamental of Bitcoin Analyze

    Тор-10 best crypto indicators to learn

    Тор-10 best crypto indicators to learn

    The Ultimate Crypto Tools Pack – Part 2

    The Ultimate Crypto Tools Pack – Part 2

    Stx bullish recovery to continue

    Stx bullish recovery to continue

    Japan’s central bank digital currency should go big, not go home

    Japan’s central bank digital currency should go big, not go home

    What is it and 5 ways to avoid it

    What is it and 5 ways to avoid it

    X spaces repeat with bluhale

    X spaces repeat with bluhale

    Build Meowverse in Telegram Play-to-Aarn Mini Game

    Build Meowverse in Telegram Play-to-Aarn Mini Game

    • Bitcoin
    • Altcoins
    • Market Overview & Trends
    • Technical Analysis & Charting
    • On-Chain Data & Metrics
    • Adoption & Use Cases
    • Security & Scams
    • Opinion & Predictions
  • Blockchain Technology
    • Enterprise Adoption & Applications
    • Supply Chain & Logistics Solutions
    • Healthcare & Medical Innovations
    • Energy & Sustainability Initiatives
    • Gaming & Metaverse Infrastructure
    • Web3 Development & Decentralization
    • DAO & Governance Protocols
    • Scalability & Interoperability Solutions
    • Privacy & Security Enhancements
  • Trading & Investing
    • Strategies & Techniques
    • Risk Management & Portfolio Allocation
    • Technical Analysis Tools & Indicators
    • Fundamental Analysis & Research
    • Market Psychology & Sentiment
    • Crypto Tax Implications
    • Institutional Investment Landscape
  • DeFi & NFTs
    • Decentralized Finance (DeFi)
    • Non-Fungible Tokens (NFTs)
  • Regulation & Policy
    • Global Regulatory Landscape
    • SEC, CFTC, and Government Actions
    • Tax Implications & Reporting
    • KYC/AML Compliance & Standards
    • Institutional Investment Guidelines
    • Central Bank Digital Currencies (CBDCs)
    • Stablecoin Regulation & Oversight
    • Self-Regulatory Organizations (SROs)
  • Security & Scams
    • Exchange Hacks & Security Breaches
    • Wallet Hacking & Phishing Attacks
    • Rug Pulls & Exit Scams
    • Malware & Ransomware Threats:
    • User Education & Best Practices
    • Regulatory Frameworks & Protections
    • Insurance & Recovery Options
  • Community & Culture
    • Crypto Influencers & Thought Leaders
    • Social Media & Online Communities
    • Memes & Internet Culture
    • Crypto Art & Music
    • Events & Conferences
    • Adoption in Developing Countries
  • Opinion & Education
    • Expert Commentaries & Predictions
    • Beginner Guides & Tutorials
    • Glossary of Crypto Terms
    • Research Papers & Whitepapers
    • Podcasts & Video Interviews
    • Book Reviews & Recommendations
No Result
View All Result
UnCirculars
No Result
View All Result
Home Crypto News & Analysis Security & Scams

Inferno Malware disguised as Coinbase drained $87 million from 137,000 victims

by Emily Green
July 7, 2024
in Security & Scams
0
Inferno Malware disguised as Coinbase drained  million from 137,000 victims
491
SHARES
1.4k
VIEWS
Share on FacebookShare on Twitter


January 16, 2024NewsroomCryptocurrency / Cyber ​​threat

The operators behind the now-defunct Inferno Drainer created more than 16,000 unique malicious domains over a one-year period between 2022 and 2023.

The scheme “employed high-quality phishing pages to lure unsuspecting users into connecting their cryptocurrency wallets to the attackers’ infrastructure that spoofed Web3 protocols to trick victims into authorizing transactions,” Singapore-headquartered Group-IB said. , said in a report shared with The Hacker News. .

Cyber ​​security

Inferno Drainer, which was active from November 2022 to November 2023, is estimated to have collected more than $87 million in illegal profits by defrauding more than 137,000 victims.

The malware is part of a broader set of similar offers available to affiliates under the scam-as-a-service (or drain-as-a-service) model in exchange for a 20% cut of their earnings .

What’s more, customers of Inferno Drainer can either upload the malware to their own phishing sites, or use the developer’s service to create and host phishing sites, either at no extra cost or 30% of the stolen assets in some cases charge

The DaaS tool became popular in the wake of the closure of Monkey Drainer in March 2023, which also paved the way for the emergence of another short-lived drainer service called Venom Drainer.

Data compiled by Scam Sniffer shows that crypto-phishing scams that distributed the drain kits cumulatively stole $295.4 million in assets from around 320,000 users in 2023.

According to Group-IB, the activity defrauded more than 100 cryptocurrency brands via specially crafted pages hosted on more than 16,000 unique domains.

Further analysis of 500 of these domains revealed that the JavaScript-based drainer was initially hosted on a GitHub repository (kuzdaz.github)[.]io/seaport/seaport.js) before being included directly on the websites. The user “kuzdaz” does not currently exist.

In a similar fashion, another set of 350 sites included a JavaScript file, “coinbase-wallet-sdk.js,” in another GitHub repository, “kasrlorcian.github”[.]yes.”

These sites were then propagated on sites such as Discord and X (formerly Twitter), enticing potential victims to click on them under the guise of offering free tokens (aka airdrops) and connecting their wallets, after which their assets were drained once the transactions have been approved. .

Cyber ​​security

Using the names seaport.js, coinbase.js and wallet-connect.js, the idea was to impersonate popular Web3 protocols such as Seaport, WalletConnect and Coinbase to complete the unauthorized transactions. The earliest site containing one of these scripts dates back to May 15, 2023.

“Another typical feature of phishing websites belonging to Inferno Drainer was that users could not open website source code using hotkeys or right-clicking the mouse,” said Group-IB analyst Viacheslav Shevchenko. “This means the criminals tried to hide their writings and illegal activities from their victims.”

It is worth noting that Mandiant’s Google-owned X account was compromised earlier this month to distribute links to a phishing page that a cryptocurrency drainer is tracking as CLINKSINK, a variant of which known as Rainbow Drainer nearly stole $4.17 million worth of assets from 3,947 Solana users. the past month.

“We believe that the ‘X as a service’ model will continue to thrive, not least because it creates greater opportunities for less technically skilled individuals to try their hand at becoming cybercriminals, and for developers it is a highly profitable way to their income,” the company told The Hacker News.

“We also expect to see more attempts to hack official accounts, as posts purporting to be written by an authoritative voice are likely to instill trust in the eyes of viewers, and may make potential victims more likely to follow links and connect their accounts.”

In addition, Group-IB said that the success of Inferno Drainer could fuel the development of new drainers and also lead to an increase in websites containing malicious scripts that cheat Web3 protocols, noting that 2024 is the “year of the drainer ” can be.

“Inferno Drainer may have stopped its activity, but its prominence throughout 2023 highlights the serious risks for cryptocurrency holders as drainers continue to evolve,” said Andrey Kolmakov, head of Group-IB’s high-tech crime investigation department.

Did you find this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.

Disclaimer for Uncirculars, with a Touch of Personality:

While we love diving into the exciting world of crypto here at Uncirculars, remember that this post, and all our content, is purely for your information and exploration. Think of it as your crypto compass, pointing you in the right direction to do your own research and make informed decisions.

No legal, tax, investment, or financial advice should be inferred from these pixels. We’re not fortune tellers or stockbrokers, just passionate crypto enthusiasts sharing our knowledge.

And just like that rollercoaster ride in your favorite DeFi protocol, past performance isn’t a guarantee of future thrills. The value of crypto assets can be as unpredictable as a moon landing, so buckle up and do your due diligence before taking the plunge.

Ultimately, any crypto adventure you embark on is yours alone. We’re just happy to be your crypto companion, cheering you on from the sidelines (and maybe sharing some snacks along the way). So research, explore, and remember, with a little knowledge and a lot of curiosity, you can navigate the crypto cosmos like a pro!

UnCirculars – Cutting through the noise, delivering unbiased crypto news

Share196Tweet123
Emily Green

Emily Green

Protecting your crypto journey is Emily's mission. Her knowledge of cybersecurity threats and common scams empowers you with safe practices and secure storage solutions.

UnCirculars

Copyright © 2024 UnCirculars

Navigate Site

  • About Us
  • Advertise
  • Terms of Use
  • Disclaimer
  • Privacy Policy
  • Contact Us

Follow Us

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Home
  • Trading & Investing
    • Risk Management & Portfolio Allocation
    • Strategies & Techniques
    • Fundamental Analysis & Research
    • Technical Analysis Tools & Indicators
  • Crypto News & Analysis
    • Bitcoin
    • Market Overview & Trends
    • Altcoins
    • Technical Analysis & Charting
  • DeFi & NFTs
    • Decentralized Finance (DeFi)
    • Non-Fungible Tokens (NFTs)
    • Exchange Hacks & Security Breaches
    • Wallet Hacking & Phishing Attacks
  • Blockchain Technology
    • Supply Chain & Logistics Solutions
    • Enterprise Adoption & Applications
    • Healthcare & Medical Innovations
    • Energy & Sustainability Initiatives

Copyright © 2024 UnCirculars