CYBERSECURITYTRACKER
TRACKING6,506 stories in this site build1,309 vulnerability news stories in this site build
Permanent story citation

Microsoft discovers new lightweight backdoor that steals cryptocurrency

This page keeps the story as Cybersecurity Tracker first published it. If the tracker later corrects it, the correction appears below the original and never replaces it.

Back to newsStory 429

As cited

Copy frozen at (site build).

threat intel

Microsoft discovers new lightweight backdoor that steals cryptocurrency

Microsoft has discovered a self-propagating worm called Crypto Clipper that spreads via USB drives and steals cryptocurrency credentials by monitoring clipboard contents for wallet addresses and seed phrases. The malware captures screenshots and exfiltrates data through an embedded Tor client routed via SOCKS5 proxy to attacker-controlled servers. The threat is notable for combining financial theft with remote code execution capabilities without requiring traditional installer or exposed command and control infrastructure.

Why it matters: Crypto Clipper's USB propagation and clipboard monitoring make it a direct threat to cryptocurrency holders; detection and mitigation should be prioritized if systems show signs of USB-based malware activity.

Source published
First seen by Cybersecurity Tracker

Source attribution

Correction

Correction recorded as of .

threat intel

Microsoft discovers new lightweight backdoor that steals cryptocurrency

Microsoft has discovered a self-propagating worm called Crypto Clipper that spreads via USB drives and steals cryptocurrency credentials by monitoring clipboard contents for wallet addresses and seed phrases. The malware captures screenshots and exfiltrates data through an embedded Tor client routed via SOCKS5 proxy to attacker-controlled servers. The threat is notable for combining financial theft with remote code execution capabilities without requiring traditional installer or exposed command and control infrastructure.

Why it matters: Crypto Clipper's USB propagation and clipboard monitoring make it a direct threat to cryptocurrency holders; detection and mitigation should be prioritized if systems show signs of USB-based malware activity.

VendorsMicrosoft
Source published
First seen by Cybersecurity Tracker

Source attribution

Glossary