/?pid=25449

Updated:03:40 AM EDT Jun 20


this is ggmania.com subsite Microsoft flags new remote access trojan targeting crypto wallet extensions on Chrome browser - TechAmok

Microsoft flags new remote access trojan targeting crypto wallet extensions on Chrome browser - [security]
06:05 PM EDT - Mar,18 2025 - post a comment

Microsoft has discovered a new trojan, StilachiRAT, targeting cryptocurrency wallets in the Google Chrome browser. The malware attacks 20 different extensions, including MetaMask, Coinbase Wallet, Trust Wallet, OKX Wallet, Bitget Wallet, Phantom, and more
StilachiRAT surfaced in November 2024 but does not appear to be widely distributed so far. However, its stealth capabilities make it a potent threat that enterprise security teams need to be aware of and protect against, Microsoft warned this week. "Microsoft continues to monitor information on the delivery vector used in these attacks," the company noted. "Malware like StilachiRAT can be installed through multiple vectors; therefore, it is critical to implement security-hardening measures to prevent the initial compromise."

StilachiRAT is a veritable Swiss Army knife for hackers. It can collect wide-ranging data like OS details, hardware identifiers including BIOS serial numbers, camera presence, and active remote desktop protocol (RDP) sessions from the system on which it is installed.

The malware is enabled for credential theft and can extract and decrypt usernames and passwords stored in Google Chrome. It targets cryptocurrency assets by scanning for as many as 20 wallet extensions within the Chrome browser. The wallets in its target list include Coinbase, Fractal, Phantom, Manta, and Bitget. In addition, the malware continuously collects clipboard content and monitors active applications, specifically targeting sensitive data such as passwords and cryptocurrency keys.

StilachiRAT is stealthy. The malware communicates with its command-and-control (C2) servers through commonly used TCP ports like Port 53, typically associated with DNS traffic, and 443, the standard port for HTTPS traffic. Both are ports that malware tools frequently use to hide malicious activity and receive commands from a C2 server. In the case of StilachiRAT, the commands it can act upon include system reboots, registry manipulation, log clearing, and executing additional malicious payloads.


Add your comment (free registrationrequired)

Short overview of recent news articles

Jun,20 2025 CPU SCAM: AMD Ryzen 9800X3D Counterfeits & Fraud
Jun,19 2025 28 Years Later Review
Jun,18 2025 HW News - NVIDIA "N1x" CPU Leak, ASUS Xbox ROG Ally, More Intel
Jun,17 2025 NVIDIA GeForce 576.80 WHQL Driver
Jun,16 2025 The Fantastic Four: First Steps - Official 'H.E.R.B.I.E.' Teaser
Jun,15 2025 Huawei Maextro S800 First Look - A True BMW & Mercedes Killer?
Jun,14 2025 Upgrade Windows 10 to Windows 10 LTSC Without Losing Data
Jun,14 2025 Squid Game: Season 3 - Final Games Trailer
Jun,11 2025 WWDC 2025: Everything Revealed in 9 Minutes
Jun,10 2025 Microsoft June 2025 Patch Tuesday fixes exploited zero-day, 66 flaws
Jun,10 2025 This Malware BREAKS WINDOWS!
Jun,10 2025 Reset Forgotten Password without Any Software, without USB drive in
Jun,08 2025 Microsoft Will Block Unsupported Hardware For Windows 11
Jun,08 2025 Memory Wars! Apple vs Ryzen - Is Unified Memory Faster than Shared
Jun,06 2025 Predator: Killer of Killers - Exclusive Clip (2025)
Jun,06 2025 Enable Deep Effect on Samsung One Ui 7
Jun,05 2025 Google Kills Off PayPal in Google Wallet
Jun,05 2025 Samsung's Next Flagship Foldable Will be Ultra
Jun,05 2025 Over 40 Malicious Chrome Extensions Mimic Popular Brands to Steal
Jun,03 2025 The Witcher IV - Unreal Engine 5 tech demo
Jun,02 2025 Nintendo Switch 2 Welcome Tour trailer
Jun,01 2025 Stranger Things 5 | Date Announcement | Netflix
May,31 2025 RTX 5060 Review... No wonder NVIDIA tried to stop us from talking
May,30 2025 Samsung Galaxy Watch 8 Classic Is Here - 7 New Updates
May,30 2025 Biggest Windows 11 24H2 May Update in the Main Release
May,29 2025 How Much Money Should You Spend on a Gaming PC?
May,29 2025 laud Note vs Note Pin - Which AI Voice Recorder To Choose
May,29 2025 Samsung One UI 8.0 vs One UI 7.0 - 25+ Changes
May,28 2025 SECRET CODE UPDATE for Samsung Galaxy Phone to Boost Performance &
May,27 2025 WhatsApp is finally available on iPad
May,27 2025 Simple Trick To Lower CPU Temperatures
May,26 2025 Alma & The Wolf - Official Trailer (2025) Ethan Embry, Li Jun Li,
May,25 2025 Change These Browser Security Settings NOW
May,24 2025 I NEED AMD to Seize This Moment - RX 9060XT
May,23 2025 Windows 98 with a G41 Core 2 Duo System
May,23 2025 Disable These Windows Settings for Better FPS!
May,20 2025 I Got the Golden GPU from Dubai
May,19 2025 Windows 10 emergency update KB5061768 fixes BitLocker boot loops -
May,19 2025 2025 AUDI S5 AVANT // 0-100 100-200 TOP SPEED POV & SOUND
May,18 2025 Jurassic World Rebirth - Official 'Alert' Teaser Trailer (2025)
>> News Archive <<

TechAmok - Privacy Policy        loading time:0.01secs