Close Menu
Crypto Chain Post
    Trending

    XRP price bearish pattern points to a 50% crash

    June 7, 2025

    Coinbase Just Fixed One of Its Major Issues as User Trust Eroded

    June 7, 2025

    Trump Prepares to Oust Fed Boss Powell, Says New Chair Decision ‘Very Soon’

    June 7, 2025

    Know Labs, Inc. Announces Adopting a Bitcoin Treasury Strategy, Starting with 1,000 Bitcoin

    June 7, 2025

    INTO and Onmi Partner to Bring AR RPG Adventures to Web3 Communities

    June 7, 2025
    Facebook X (Twitter) Instagram TikTok Telegram
    • Privacy Policy
    • Terms of use
    • Advertise
    • Contact
    Saturday, June 7
    Crypto Chain Post
    Price Index Newsletter
    • Home
    • News
      • Bitcoin
      • Ethereum
      • Altcoin
    • Blockchain
    • Markets
    • NFTs
    • DeFi
    • Web3
    • Analysis
    • Metaverse
    • Resources
      • Price Index
      • Crypto Heatmap
      • Glossary
      • Exchange
      • Economic Calendar
    • More
      • GameFi
      • ICO
      • Legal
      • Security
    Crypto Chain Post
    Home » Lazarus Group targets crypto professionals with new ‘OtterCookie’ malware
    Analysis

    Lazarus Group targets crypto professionals with new ‘OtterCookie’ malware

    News RoomBy News RoomJune 6, 2025No Comments2 Mins Read

    North Korea-linked hacking group Lazarus is reportedly using a new malware strain called OtterCookie to target people working in crypto and finance.

    According to a June 6 alert posted on X by web3 security firm SlowMist, the group is reportedly using fake job interviews, deepfake recruiter videos, and malware-laced coding challenges to deliver the stealer malware. OtterCookie can extract browser-stored credentials, macOS Keychain passwords, digital certificates, and private keys from crypto wallets.

    🚨SlowMist Security Alert🚨

    SlowMist recently received intelligence indicating that the Lazarus APT group is using a new stealer called OtterCookie in targeted attacks on crypto & finance pros.

    🎭Tactics:
    – Fake job interviews/investor calls
    – Deepfake videos to impersonate…

    — SlowMist (@SlowMist_Team) June 6, 2025

    It enables attackers to quietly steal confidential data from targeted systems, especially macOS machines. The tactic is gaining traction as attackers rely less on large-scale exploits and more on highly targeted, social-engineering-based methods.

    The latest malware appears to be part of Lazarus Group’s continuous efforts to penetrate the cryptocurrency industry. The group was responsible for February’s historic $1.5 billion Bybit hack, in which they obtained cold wallet signers through social engineering and spear phishing.

    You might also like: US DOJ moves to seize $7.7m in crypto linked to North Korean IT infiltration scheme

    In recent months, Lazarus has also launched npm package attacks aimed at developer environments and wallet infrastructure, including Solana (SOL) and Exodus. In April, the FBI and cybersecurity firm Silent Push seized a fake website used by Lazarus, known as “Blocknovas,” which posed as a U.S.-based tech company to deliver malware through job scams.

    According to SlowMist, crypto professionals should exercise caution when responding to unsolicited job or investment offers, particularly if they require downloading files or participating in video calls with strangers. Users should improve endpoint detection and response, refrain from running unknown binaries, and routinely check systems for unusual activity.

    So far this year, the crypto industry has taken the heaviest hit as a result of high-profile hacks. Q1 losses amounted to more than $1.6 billion, and the trend seems to be continuing. PeckShield estimates that losses from hacks totaled $244.1 million in May. Two significant events were the $220 million Cetus Protocol hack and another $12 million Cork Protocol exploit.

    Read more: Sui community approves on-chain vote to recover funds frozen after $223M Cetus hack

    Read the full article here

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

    Related News

    XRP price bearish pattern points to a 50% crash

    June 7, 2025

    Circle stock price pump gains steam, but a crash may follow

    June 7, 2025

    What the data says about SHIB’s next move

    June 7, 2025

    Top 3 reasons why the crypto market is down today

    June 7, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top News

    Coinbase Just Fixed One of Its Major Issues as User Trust Eroded

    June 7, 2025

    Trump Prepares to Oust Fed Boss Powell, Says New Chair Decision ‘Very Soon’

    June 7, 2025

    Know Labs, Inc. Announces Adopting a Bitcoin Treasury Strategy, Starting with 1,000 Bitcoin

    June 7, 2025
    Advertisement
    Demo
    Crypto Chain Post
    • Home
    • Privacy Policy
    • Terms of use
    • Advertise
    • Contact
    © 2025 Crypto Chain Post. All Rights Reserved.

    71-75 Shelton Street, Covent Garden, London United Kingdom, WC2H 9JQ

    Type above and press Enter to search. Press Esc to cancel.