A new report published by the cybersecurity firm ESET warns of a new type of malware called KryptoCibule, which, unlike others better known in the ecosystem, implements mining functions and enables the possibility of the theft of crypto funds hosted on infected computers. According to information published in the respective report, KryptoCibule is a type of Trojan malware, which spreads through infected torrent files. Although most of the registered cases come from the Czech Republic and Slovakia, they warn about the risk that it could represent for those affected if they stay in a team.

KryptoCibule Malware

The researchers suggest that given the properties of this malware, it is believed that it was specially designed to attack users of cryptocurrencies, since unlike other malware, it has functions particularly aimed at taking funds from people who receive transactions. in their respective wallets as well as the problems they cause:

▸It camouflages itself in the infected computer by circumventing cybersecurity software and uses the computer’s processing power to mine cryptocurrencies, especially Wallet funds.

▸It hijacks the transactions that come in the direction of the wallet hosted on the compromised computer, replacing these with others belonging to the malware operators.

▸Filters files on the computer associated with cryptocurrencies, thereby stealing the funds originally housed in the victim’s wallet.

▸KryptoCibule has the ability to update periodically once hosted on the computer.

The report also details that the KryptoCibule malware has spread mainly through the BitTorrent protocol, especially when downloading free versions of some illegal software. Other reports also indicate that there were infections derived from the use of the Tor browser.

Learn more about other types of Malware here:
BlackRock – New Malware Roughly Dangerous
Types of Malware Attacks that we can run into
Drovorub – A Malware based on Linux system


Deja un comentario

Tu dirección de correo electrónico no será publicada. Los campos obligatorios están marcados con *