Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
No Result
View All Result

A New Golang-Based Information Stealer Malware Emerges

Altszn.com by Altszn.com
January 30, 2023
in Zcash
0
A New Golang-Based Information Stealer Malware Emerges
399
SHARES
2.3k
VIEWS
Share on FacebookShare on Twitter


Jan 30, 2023Ravie LakshmananThreat Detection / Malware

A new Golang-based information stealer malware dubbed Titan Stealer is being advertised by threat actors through their Telegram channel.

“The stealer is capable of stealing a variety of information from infected Windows machines, including credential data from browsers and crypto wallets, FTP client details, screenshots, system information, and grabbed files,” Uptycs security researchers Karthickkumar Kathiresan and Shilpesh Trivedi said in a recent report.

Details of the malware were first documented by cybersecurity researcher Will Thomas (@BushidoToken) in November 2022 by querying the IoT search engine Shodan.

Titan is offered as a builder, enabling customers to customize the malware binary to include specific functionalities and the kind of information to be exfiltrated from a victim’s machine.

The malware, upon execution, employs a technique known as process hollowing to inject the malicious payload into the memory of a legitimate process known as AppLaunch.exe, which is the Microsoft .NET ClickOnce Launch Utility.

Some of the major web browsers targeted by Titan Stealer include Google Chrome, Mozilla Firefox, Microsoft Edge, Yandex, Opera, Brave, Vivaldi, 7 Star Browser, Iridium Browser, and others. The crypto wallets singled out are Armory, Armory, Bytecoin, Coinomi, Edge Wallet, Ethereum, Exodus, Guarda, Jaxx Liberty, and Zcash.

It’s also capable of gathering the list of installed applications on the compromised host and capturing data associated with the Telegram desktop app.

The amassed information is subsequently transmitted to a remote server under the attacker’s control as a Base64-encoded archive file. Furthermore, the malware comes with a web panel that enables adversaries to access the stolen data.

The exact modus operandi used to distribute the malware is unclear as yet, but traditionally threat actors have leveraged a number of methods, such as phishing, malicious ads, and cracked software.

“One of the primary reasons [threat actors] may be using Golang for their information stealer malware is because it allows them to easily create cross-platform malware that can run on multiple operating systems, such as Windows, Linux, and macOS,” Cyble said in its own analysis of Titan Stealer.

“Additionally, the Go compiled binary files are small in size, making them more difficult to detect by security software.”

The development arrives a little over two months after SEKOIA detailed another Go-based malware referred to as Aurora Stealer that’s being put to use by several criminal actors in their campaigns.

The malware is typically propagated via lookalike websites of popular software, with the same domains actively updated to host trojanized versions of different applications.

It has also been observed taking advantage of a method known as padding to artificially inflate the size of the executables to as much as 260MB by adding random data so as to evade detection by antivirus software.

The findings come close on the heels of a malware campaign that has been observed delivering Raccoon and Vidar using hundreds of fake websites masquerading as legitimate software and games.

Team Cymru, in an analysis published earlier this month, noted that “Vidar operators have split their infrastructure into two parts; one dedicated to their regular customers and the other for the management team, and also potentially premium / important users.”

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.





Read More: news.google.com

Tags: computer securitycyber attackscyber newscyber security newscyber security news todaycyber security updatescyber updatesdata breachEmergesGolangBasedhacker newshacking newshow to hackinformationinformation securityMalwarenetwork securityransomware malwaresoftware vulnerabilitystealerthe hacker newsZcash
ADVERTISEMENT

Recent

Bitcoin hits $103K but DeFi is a mixed bag: Finance Redefined

Bitcoin hits $103K but DeFi is a mixed bag: Finance Redefined

May 9, 2025
Cointelegraph Bitcoin & Ethereum Blockchain News

Cointelegraph Bitcoin & Ethereum Blockchain News

May 9, 2025
How GAMEE Is Making Web3 Irresistibly Fun

How GAMEE Is Making Web3 Irresistibly Fun

May 9, 2025

Categories

  • Bitcoin (4,942)
  • Blockchain (11,601)
  • Crypto (9,539)
  • Dark Web (561)
  • DeFi (8,488)
  • Ethereum (5,009)
  • Metaverse (7,742)
  • Monero (303)
  • NFT (1,590)
  • Solana (5,093)
  • Web3 (20,982)
  • Zcash (508)

Category

Select Category

    Advertise

    Advertise your site, company or product to millions of web3, NFT and cryptocurrency enthusiasts. Learn more

    Useful Links

    Advertise
    DMCA
    Contact Us
    Privacy Policy
    Shipping & Returns
    Terms of Use

    Resources

    Exchanges
    Changelly
    Web3 Jobs

    Recent News

    Bitcoin hits $103K but DeFi is a mixed bag: Finance Redefined

    Bitcoin hits $103K but DeFi is a mixed bag: Finance Redefined

    May 9, 2025
    Cointelegraph Bitcoin & Ethereum Blockchain News

    Cointelegraph Bitcoin & Ethereum Blockchain News

    May 9, 2025

    © 2022 Altszn.com. All Rights Reserved.

    No Result
    View All Result
    • Home
      • Home – Layout 1
      • Home – Layout 2
      • Home – Layout 3

    © Altszn.com. All Rights Reserved.

    • bitcoinBitcoin (BTC) $ 103,141.00
    • ethereumEthereum (ETH) $ 2,478.99
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.42
    • bnbBNB (BNB) $ 653.34
    • solanaSolana (SOL) $ 171.63
    • usd-coinUSDC (USDC) $ 0.999991
    • dogecoinDogecoin (DOGE) $ 0.232744
    • cardanoCardano (ADA) $ 0.812400
    • tronTRON (TRX) $ 0.260509
    • staked-etherLido Staked Ether (STETH) $ 2,474.61
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,140.00
    • suiSui (SUI) $ 3.97
    • chainlinkChainlink (LINK) $ 16.68
    • wrapped-stethWrapped stETH (WSTETH) $ 2,979.21
    • avalanche-2Avalanche (AVAX) $ 24.42
    • stellarStellar (XLM) $ 0.306875
    • shiba-inuShiba Inu (SHIB) $ 0.000016
    • hedera-hashgraphHedera (HBAR) $ 0.211288
    • the-open-networkToncoin (TON) $ 3.37
    • hyperliquidHyperliquid (HYPE) $ 25.09
    • bitcoin-cashBitcoin Cash (BCH) $ 420.08
    • usdsUSDS (USDS) $ 0.999990
    • leo-tokenLEO Token (LEO) $ 8.61
    • litecoinLitecoin (LTC) $ 103.01
    • polkadotPolkadot (DOT) $ 5.06
    • wethWETH (WETH) $ 2,480.60
    • moneroMonero (XMR) $ 322.78
    • wrapped-eethWrapped eETH (WEETH) $ 2,645.49
    • bitget-tokenBitget Token (BGB) $ 4.84
    • pepePepe (PEPE) $ 0.000013
    • pi-networkPi Network (PI) $ 0.739752
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,107.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • whitebitWhiteBIT Coin (WBT) $ 30.19
    • uniswapUniswap (UNI) $ 6.87
    • bittensorBittensor (TAO) $ 447.91
    • nearNEAR Protocol (NEAR) $ 3.03
    • aptosAptos (APT) $ 5.77
    • daiDai (DAI) $ 0.999967
    • aaveAave (AAVE) $ 223.85
    • ondo-financeOndo (ONDO) $ 1.04
    • okbOKB (OKB) $ 54.76
    • susdssUSDS (SUSDS) $ 1.05
    • ethereum-classicEthereum Classic (ETC) $ 19.82
    • internet-computerInternet Computer (ICP) $ 5.48
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • crypto-com-chainCronos (CRO) $ 0.100052
    • official-trumpOfficial Trump (TRUMP) $ 14.23
    • bitcoinBitcoin (BTC) $ 103,141.00
    • ethereumEthereum (ETH) $ 2,478.99
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.42
    • bnbBNB (BNB) $ 653.34
    • solanaSolana (SOL) $ 171.63
    • usd-coinUSDC (USDC) $ 0.999991
    • dogecoinDogecoin (DOGE) $ 0.232744
    • cardanoCardano (ADA) $ 0.812400
    • tronTRON (TRX) $ 0.260509
    • staked-etherLido Staked Ether (STETH) $ 2,474.61
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 103,140.00
    • suiSui (SUI) $ 3.97
    • chainlinkChainlink (LINK) $ 16.68
    • wrapped-stethWrapped stETH (WSTETH) $ 2,979.21
    • avalanche-2Avalanche (AVAX) $ 24.42
    • stellarStellar (XLM) $ 0.306875
    • shiba-inuShiba Inu (SHIB) $ 0.000016
    • hedera-hashgraphHedera (HBAR) $ 0.211288
    • the-open-networkToncoin (TON) $ 3.37
    • hyperliquidHyperliquid (HYPE) $ 25.09
    • bitcoin-cashBitcoin Cash (BCH) $ 420.08
    • usdsUSDS (USDS) $ 0.999990
    • leo-tokenLEO Token (LEO) $ 8.61
    • litecoinLitecoin (LTC) $ 103.01
    • polkadotPolkadot (DOT) $ 5.06
    • wethWETH (WETH) $ 2,480.60
    • moneroMonero (XMR) $ 322.78
    • wrapped-eethWrapped eETH (WEETH) $ 2,645.49
    • bitget-tokenBitget Token (BGB) $ 4.84
    • pepePepe (PEPE) $ 0.000013
    • pi-networkPi Network (PI) $ 0.739752
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 103,107.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • whitebitWhiteBIT Coin (WBT) $ 30.19
    • uniswapUniswap (UNI) $ 6.87
    • bittensorBittensor (TAO) $ 447.91
    • nearNEAR Protocol (NEAR) $ 3.03
    • aptosAptos (APT) $ 5.77
    • daiDai (DAI) $ 0.999967
    • aaveAave (AAVE) $ 223.85
    • ondo-financeOndo (ONDO) $ 1.04
    • okbOKB (OKB) $ 54.76
    • susdssUSDS (SUSDS) $ 1.05
    • ethereum-classicEthereum Classic (ETC) $ 19.82
    • internet-computerInternet Computer (ICP) $ 5.48
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • crypto-com-chainCronos (CRO) $ 0.100052
    • official-trumpOfficial Trump (TRUMP) $ 14.23