Feb 19, 2023

Malicious Crypto Attackers Target Investors Since Dec ’22

Crypto investors have been targeted by two malicious computer programs, MortalKombat ransomware and Laplas Clipper malware, since December 2022. The malicious software works in partnership to steal cryptocurrencies from unsuspecting investors, according to threat intelligence research team, Cisco Talos.

The victims of the attack have been predominantly located in the United States, as well as smaller percentages in the United Kingdom, Turkey, and the Philippines. The attack relies on the user’s inattentiveness to the sender’s wallet address, which is then replaced with a different address. This means that both individuals and small and large organizations are vulnerable to the attack.

Once infected, the MortalKombat ransomware encrypts the user’s files and drops a ransom note with payment instructions. The malicious software is spread through a cryptocurrency-themed email containing a malicious attachment, which runs a BAT file that downloads and executes the ransomware when opened.

In order to prevent this attack from impacting their financial well-being, investors should perform extensive due diligence before investing and ensure the official source of communications. Additionally, investors should read this Cointelegraph Magazine article to learn how to keep crypto assets safe.

On the other hand, ransomware revenues for attackers have dropped 40% to $456.8 million in 2022. Despite this, Chainalysis noted that the figures don’t necessarily mean the number of attacks is down from the previous year.

