As cited
Copy frozen at (site build).
threat intel
Microsoft discovers new lightweight backdoor that steals cryptocurrency
Microsoft has discovered a self-propagating worm called Crypto Clipper that spreads via USB drives and steals cryptocurrency credentials by monitoring clipboard contents for wallet addresses and seed phrases. The malware captures screenshots and exfiltrates data through an embedded Tor client routed via SOCKS5 proxy to attacker-controlled servers. The threat is notable for combining financial theft with remote code execution capabilities without requiring traditional installer or exposed command and control infrastructure.
Why it matters: Crypto Clipper's USB propagation and clipboard monitoring make it a direct threat to cryptocurrency holders; detection and mitigation should be prioritized if systems show signs of USB-based malware activity.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
Microsoft discovers new lightweight backdoor that steals cryptocurrency
Microsoft has discovered a self-propagating worm called Crypto Clipper that spreads via USB drives and steals cryptocurrency credentials by monitoring clipboard contents for wallet addresses and seed phrases. The malware captures screenshots and exfiltrates data through an embedded Tor client routed via SOCKS5 proxy to attacker-controlled servers. The threat is notable for combining financial theft with remote code execution capabilities without requiring traditional installer or exposed command and control infrastructure.
Why it matters: Crypto Clipper's USB propagation and clipboard monitoring make it a direct threat to cryptocurrency holders; detection and mitigation should be prioritized if systems show signs of USB-based malware activity.
- Source published
- First seen by Cybersecurity Tracker