Posts

Showing posts with the label software

Hackers found new way to steal crypto with BSC blockchain

Image
Cyber fraudsters have discovered a new way to distribute virus software among users. According to research by Guardio Labs, attackers have begun manipulating BNB Smart Chain (BSC) smart contracts to hide malware and distribute malicious code. Analysts note that the attack involves compromising WordPress websites by injecting code that extracts partial payloads from blockchain contracts. Attackers hide useful data in BSC smart contracts, essentially serving as anonymous, free hosting platforms for them. You might also like: FTX hacker moves $4.2m worth of ETH after months of inactivity Experts point out that hackers can update codes and change attack methods at their discretion. The most recent attacks have come in fake browser updates, where victims are asked to update their browsers using a phony landing page and link. Source: Guardio As a result, this leads to complete site corruption through fake browser updates that distribute malware. With this attack, attacke...

Phishing attack on software firm Retool enabled Fortress Trust hack: CoinDesk

The third-party blamed for a security failure that allowed a phishing attack to steal $15 million in crypto from Fortress Trust has been named by CoinDesk as Retool, a software development firm with multiple Fortune 500 clients.  On September 7, Fortress announced that cloud software provided by a third-party had been “compromised” while failing to mention the firm responsible by name. It also claimed there was “no loss of funds.”  Yesterday evening, CoinDesk cited unnamed sources familiar with the situation that the firm was Retool . The San Francisco firm provides an online portal for Fortress customers that allows them to access their funds. In response to CoinDesk, Retool acknowledged it had been the victim of a phishing attack. In a blog post published yesterday, it claimed that 27 cloud customers had unauthorized access to their accounts. Retool, however, failed to mention Fortress in the post.  Retool detailed how one employee was tricked into giving up their multi-factor...