New MassJacker malware targets piracy users, steals crypto | Glideslope AI

New MassJacker malware targets piracy users, steals crypto

Featured Image

Published on Friday, March 14, 2025 by Cointelegraph | Found on Glideslope.ai

A previously unknown type of cryptojacking malware called MassJacker is targeting piracy users and hijacking crypto transactions by replacing stored addresses, according to a March 10 report from CyberArk.The cryptojacking malware originates from the website pesktop[dot]com, where users seeking to download pirated software may unknowingly infect their devices with the MassJacker malware. After the malware is installed, the infection swaps out crypto addresses stored on the clipboard application for addresses controlled by the attacker.According to CyberArk, there are 778,531 unique wallets linked to the theft. However, only 423 wallets held crypto assets at any point. The total amount of crypto that had either been stored or transferred out of the wallets amounted to $336,700 as of August. However, the company noted that the true extent of the theft could be higher or lower.One wallet, in particular, seemed active. This wallet contained just over 600 Solana (SOL) at the time of analysis, worth approximately $87,000, and had a history of holding non-fungible tokens. These NFTs included Gorilla Reborn and Susanoo.Related: Hackers have started using AI to churn out malwareA look into the wallet on Solana’s blockchain explorer Solscan shows 1,184 transactions dating back to March 11, 2022. In addition to transfers, the wallet’s owner dabbled in decentralized finance in November 2024, swapping various tokens like Jupiter (JUP), Uniswap (UNI), USDC (USDC), and Raydium (RAY).Crypto malware targets array of devicesCrypto malware is not new. The first publicly available cryptojacking script was released by Coinhive in 2017, and since then, attackers have targeted an array of devices using different operating systems.In February 2025, Kaspersky Labs said that it had found crypto malware in app-making kits for Android and iOS. The malware had the ability to scan images for crypto seed phrases. In October 2024, cybersecurity firm Checkmarx revealed it had discovered crypto-stealing malware in a Python Package Index, which is a platform for developers to download and share code. Other crypto malware have targeted macOS devices.Related: Mac users warned over malware ‘Cthulhu’ that steals crypto walletsRather than having victims open a suspicious PDF file or download a contaminated attachment, attackers are getting sneakier. One new “injection method” involves the fake job scam, where an attacker will recruit their victim with the promise of a job. During the virtual interview, the attacker will ask the victim to “fix” microphone or camera access issues. That “fix” is what installs the malware, which can then drain the victim’s crypto wallet.The “clipper” attack, in which malware alters cryptocurrency addresses copied to a clipboard, is less well-known than ransomware or information-stealing malware. However, it offers advantages for attackers, as it operates discreetly and often goes undetected in sandbox environments, according to CyberArk.Magazine: Real AI use cases in crypto, No. 3: Smart contract audits & cybersecurity

go to article
share on X
login to use Pulse AI
snap post
snap + pulse


Pulse AI Analysis



Analysis: optimistic
Score: 19.03
-100 (Bearish) +100 (Bullish)

Sentiment Score: 19.03 - Leaning optimistic.

This analysis was generated using Pulse AI, Glideslope's proprietary AI engine designed to interpret market sentiment and economic signals. Results are for informational purposes only and do not constitute financial advice.



source fraywire
share on X

Glideslope AI
New MassJacker malware targets piracy users, steals crypto
A previously unknown type of cryptojacking malware called MassJacker is targeting piracy users and hijacking crypto transactions by replacing stored addresses, according to a March 10 report from CyberArk.The cryptojacking malware originates from the website pesktop[dot]com, where users seeking to download pirated software may unknowingly infect their devices with the MassJacker malware. After the malware is installed, the infection swaps out crypto addresses stored on the clipboard application for addresses controlled by the attacker.According to CyberArk, there are 778,531 unique wallets linked to the theft. However, only 423 wallets held crypto assets at any point. The total amount of crypto that had either been stored or transferred out of the wallets amounted to $336,700 as of August. However, the company noted that the true extent of the theft could be higher or lower.One wallet, in particular, seemed active. This wallet contained just over 600 Solana (SOL) at the time of analysis, worth approximately $87,000, and had a history of holding non-fungible tokens. These NFTs included Gorilla Reborn and Susanoo.Related: Hackers have started using AI to churn out malwareA look into the wallet on Solana’s blockchain explorer Solscan shows 1,184 transactions dating back to March 11, 2022. In addition to transfers, the wallet’s owner dabbled in decentralized finance in November 2024, swapping various tokens like Jupiter (JUP), Uniswap (UNI), USDC (USDC), and Raydium (RAY).Crypto malware targets array of devicesCrypto malware is not new. The first publicly available cryptojacking script was released by Coinhive in 2017, and since then, attackers have targeted an array of devices using different operating systems.In February 2025, Kaspersky Labs said that it had found crypto malware in app-making kits for Android and iOS. The malware had the ability to scan images for crypto seed phrases. In October 2024, cybersecurity firm Checkmarx revealed it had discovered crypto-stealing malware in a Python Package Index, which is a platform for developers to download and share code. Other crypto malware have targeted macOS devices.Related: Mac users warned over malware ‘Cthulhu’ that steals crypto walletsRather than having victims open a suspicious PDF file or download a contaminated attachment, attackers are getting sneakier. One new “injection method” involves the fake job scam, where an attacker will recruit their victim with the promise of a job. During the virtual interview, the attacker will ask the victim to “fix” microphone or camera access issues. That “fix” is what installs the malware, which can then drain the victim’s crypto wallet.The “clipper” attack, in which malware alters cryptocurrency addresses copied to a clipboard, is less well-known than ransomware or information-stealing malware. However, it offers advantages for attackers, as it operates discreetly and often goes undetected in sandbox environments, according to CyberArk.Magazine: Real AI use cases in crypto, No. 3: Smart contract audits & cybersecurity
Cointelegraph Mar 14, 2025 Found on Glideslope.ai
Post hash: 71342464639424129401 • glideslope.ai/post/71342464639424129401
Sentiment
optimistic • Score: 19.03
-100 (Bearish) +100 (Bullish)
Pulse AI
Recent Articles
More on Glideslope AI

CBS News: Book excerpt: "Life, Law & Liberty" by Justice Anthony Kennedy

In his new memoir, the former justice writes about his life's journey to becoming a lawyer, a judge,...

Published on 2025-10-12 14:51:04

Read more

CBS News: Jeremy Allen White on playing The Boss in "Springsteen: Deliver Me From Nowhere"

The star of "The Bear" talks about how he approached playing legendary rocker Bruce Springsteen in a...

Published on 2025-10-12 14:50:31

Read more

The Daily Caller: Kamala Harris’s Book Tour Continues Getting Derailed By Hecklers Accusing Her Of War Crimes

'Your legacy is genocide!'...

Published on 2025-10-12 14:38:22

Read more

CBS News: Nature: Fall colors in Maine

We leave you this Sunday savoring a fall weekend in Maine. Videographer: Mauricio Handler....

Published on 2025-10-12 14:30:00

Read more

CBS News: Justice Anthony Kennedy on the Supreme Court today: "A little bit too personal and confrontational"

The former justice who was the deciding vote on some of the Supreme Court's most consequential decis...

Published on 2025-10-12 14:26:10

Read more

CBS News: Justice Anthony Kennedy on "Life, Law & Liberty"

In his new memoir, "Life, Law & Liberty," former Supreme Court Justice Anthony Kennedy writes about ...

Published on 2025-10-12 14:24:00

Read more

Cointelegraph: Why did some altcoins on Binance crash to zero?

...

Published on 2025-10-12 14:20:00

Read more

Business Insider: My parents lived with my family of 7 after selling their house. There were challenges, but I'd do it again in a heartbeat.

My parents lived with my family of 7 after selling their house. There were challenges, but I'd do it...

Published on 2025-10-12 14:17:02

Read more