DeFi Daily News
Friday, April 10, 2026
Advertisement
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos
No Result
View All Result
DeFi Daily News
No Result
View All Result
Home Markets Crypto Market

rewrite this title Microsoft uncovers new trojan targeting crypto wallet extensions on chrome

Assad Jafri by Assad Jafri
March 18, 2025
in Crypto Market
0 0
0
rewrite this title Microsoft uncovers new trojan targeting crypto wallet extensions on chrome
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on Telegram
Listen to this article


rewrite this content using a minimum of 1200 words and keep HTML tags

Microsoft researchers have identified a new remote access trojan (RAT) named StilachiRAT, designed to steal cryptocurrency wallet data, credentials, and system information while maintaining persistent access to compromised devices, the company disclosed on March 17.

The malware, first detected in November 2024, employs stealth techniques and anti-forensic measures to evade detection.

While Microsoft has not yet attributed StilachiRAT to a known threat actor, security experts warn that its capabilities could pose a significant cybersecurity risk, particularly to users handling crypto.

Sophisticated threat

StilachiRAT is capable of scanning for and extracting data from 20 different cryptocurrency wallet extensions in Google Chrome, including MetaMask, Trust Wallet, and Coinbase Wallet, allowing attackers to access stored funds.

Additionally, the malware decrypts saved Chrome passwords, monitors clipboard activity for sensitive financial data, and establishes remote command-and-control (C2) connections via TCP ports 53, 443, and 16000 to execute commands on infected machines.

The RAT also monitors active Remote Desktop Protocol (RDP) sessions, impersonates users by duplicating security tokens, and enables lateral movement across networks — an especially dangerous feature for enterprise environments.

Persistence mechanisms include modifying Windows service settings and launching watchdog threads to reinstate itself if removed.

To further evade detection, StilachiRAT clears system event logs, disguises API calls, and delays its initial connection to C2 servers by two hours. It also searches for analysis tools such as tcpview.exe and halts execution if they are present, making forensic analysis more difficult.

Mitigation strategies and response

Microsoft advised users to download software only from official sources, as malware like StilachiRAT can masquerade as legitimate applications.

The company also recommended enabling network protection in Microsoft Defender for Endpoint and activating Safe Links and Safe Attachments in Microsoft 365 to guard against phishing-based malware distribution.

Microsoft Defender XDR has been updated to detect StilachiRAT activity. Security professionals are urged to monitor network traffic for unusual connections, inspect system modifications, and track unauthorized service installations that could indicate an infection.

While Microsoft has not observed widespread distribution of StilachiRAT, the company warned that threat actors frequently evolve their malware to bypass security measures. Microsoft said it is continuing to monitor the threat and will provide further updates through its Threat Intelligence Blog.

Mentioned in this article

XRP Turbo

and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this



Source link

Tags: ChromeCryptoextensionsMicrosoftrewriteTargetingtitletrojanUncoversWallet
ShareTweetShare
Previous Post

rewrite this title XRP Potentially Set for Massive Price Collapse As Bearish Technical Setup Forms, According to Crypto Trader – The Daily Hodl

Next Post

Stranded Astronauts Return to Earth: Watch the Undocking and Splashdown

Next Post
Stranded Astronauts Return to Earth: Watch the Undocking and Splashdown

Stranded Astronauts Return to Earth: Watch the Undocking and Splashdown

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Search

No Result
View All Result
  • Trending
  • Comments
  • Latest
rewrite this title Google Unveils Flow: An All-in-One AI Video Editing Tool That Can Do It All!

rewrite this title Google Unveils Flow: An All-in-One AI Video Editing Tool That Can Do It All!

May 21, 2025
rewrite this title How to Get Top Solana Token Holders – Moralis APIs

rewrite this title How to Get Top Solana Token Holders – Moralis APIs

May 14, 2025
rewrite this title 10 Tools That Will Give Crypto Traders A Predictive Edge In 2026

rewrite this title 10 Tools That Will Give Crypto Traders A Predictive Edge In 2026

December 14, 2025
rewrite this title and make it good for SEO Hyperliquid Deep Dive: Understand HYPE and HLP Model

rewrite this title and make it good for SEO Hyperliquid Deep Dive: Understand HYPE and HLP Model

April 3, 2025
Vance, Trump’s VP Choice, Advocates for Stringent China Policy: Analyst Insights – Reuters

Vance, Trump’s VP Choice, Advocates for Stringent China Policy: Analyst Insights – Reuters

July 16, 2024
Finovate announces partnership between InvoiceASAP and Adyen to provide instant payouts

Finovate announces partnership between InvoiceASAP and Adyen to provide instant payouts

August 22, 2024
rewrite this title Binance Joins Crypto Rivals in Race to Launch Prediction Markets – Finovate

rewrite this title Binance Joins Crypto Rivals in Race to Launch Prediction Markets – Finovate

April 10, 2026
rewrite this title Bitcoin Supply In Profit Drops Sharply, Echoing Previous Bear Market Levels, Downtrend To Continue? | Bitcoinist.com

rewrite this title Bitcoin Supply In Profit Drops Sharply, Echoing Previous Bear Market Levels, Downtrend To Continue? | Bitcoinist.com

April 10, 2026
rewrite this title and make it good for SEOEquities mixed, oil dips in cautious trade ahead of US-Iran talks By Reuters

rewrite this title and make it good for SEOEquities mixed, oil dips in cautious trade ahead of US-Iran talks By Reuters

April 10, 2026
rewrite this title This ‘Space Invaders’ Clone Game Pays Real Bitcoin—If You’re Skilled, Lucky or Rich – Decrypt

rewrite this title This ‘Space Invaders’ Clone Game Pays Real Bitcoin—If You’re Skilled, Lucky or Rich – Decrypt

April 10, 2026
LIVE: Stocks mixed as Nasdaq rises, Dow falls after March CPI data shows surging energy costs

LIVE: Stocks mixed as Nasdaq rises, Dow falls after March CPI data shows surging energy costs

April 10, 2026
rewrite this title Michael Burry says he’s still betting against Palantir after Trump post boosts stock

rewrite this title Michael Burry says he’s still betting against Palantir after Trump post boosts stock

April 10, 2026
DeFi Daily

Stay updated with DeFi Daily, your trusted source for the latest news, insights, and analysis in finance and cryptocurrency. Explore breaking news, expert analysis, market data, and educational resources to navigate the world of decentralized finance.

  • About Us
  • Blogs
  • DeFi-IRA | Learn More.
  • Advertise with Us
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • Altcoins
    • DeFi-IRA
  • DeFi
    • NFT
    • Metaverse
    • Web 3
  • Finance
    • Business Finance
    • Personal Finance
  • Markets
    • Crypto Market
    • Stock Market
    • Analysis
  • Other News
    • World & US
    • Politics
    • Entertainment
    • Tech
    • Sports
    • Health
  • Videos

Copyright © 2024 Defi Daily.
Defi Daily is not responsible for the content of external sites.