朝鲜黑客组织 BlueNoroff 利用虚假 Zoom 和 Teams 会议扫描加密钱包,并投放恶意软件

链捕手
Jul 26

ChainCatcher 消息,据 Crypto.news 报道,与朝鲜有关联的黑客组织 BlueNoroff 利用虚假的 Zoom 和 Microsoft Teams 会议来分析加密货币用户,然后再投放恶意软件。

黑客先控制受害者信任的加密行业联系人账号,然后通过 Calendly 等发送看似正常的会议链接,指向假冒 Zoom/Teams 域名。用户进入假会议页面后,页面悄悄扫描浏览器中的钱包,根据钱包价值决定是否继续攻击。假会议中会要求“更新 Zoom/Teams”或运行命令,实际下载恶意软件(支持 Windows 和 macOS)。恶意软件会窃取浏览器密钥、系统数据和 Telegram 会话。

Disclaimer: Investing carries risk. This is not financial advice. The above content should not be regarded as an offer, recommendation, or solicitation on acquiring or disposing of any financial products, any associated discussions, comments, or posts by author or other users should not be considered as such either. It is solely for general information purpose only, which does not consider your own investment objectives, financial situations or needs. TTM assumes no responsibility or warranty for the accuracy and completeness of the information, investors should do their own research and may seek professional advice before investing.

Most Discussed

  1. 1
     
     
     
     
  2. 2
     
     
     
     
  3. 3
     
     
     
     
  4. 4
     
     
     
     
  5. 5
     
     
     
     
  6. 6
     
     
     
     
  7. 7
     
     
     
     
  8. 8
     
     
     
     
  9. 9
     
     
     
     
  10. 10