• About Us
  • Careers
  • Contact
No Result
View All Result
Monday, July 14, 2025
DeFi Planet
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
    • Glossary
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
    • Glossary
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
No Result
View All Result
DeFi Planet
No Result
View All Result
Home News Crypto

Google Uncovers New Malware ‘LOSTKEYS’ Used by Russian-Backed COLDRIVER Group in Sophisticated Attacks

8 May 2025
in Crypto, News
Reading Time: 3 mins read
103 6
Google Uncovers New Malware 'LOSTKEYS' Used by Russian-Backed COLDRIVER Group in Sophisticated Attacks

Source: WIRED

Russian-backed cyber-espionage group COLDRIVER has ramped up its tactics with the deployment of a new malware strain known as LOSTKEYS, targeting high-profile Western individuals and organizations, according to a new report from Google Threat Intelligence.

The threat actor, previously known for its credential phishing operations, is now adopting more advanced techniques to steal sensitive documents. The LOSTKEYS malware operates through a multi-stage infection chain, beginning with a deceptive lure website that mimics CAPTCHA verification. Once a victim interacts with the site, a malicious PowerShell script is stealthily copied to their clipboard. From there, the script executes a series of evasion techniques before downloading the final payload — the LOSTKEYS malware.

Once installed, LOSTKEYS can extract files from specific directories and extensions. It also gathers detailed system information and monitors active processes, transmitting this data back to COLDRIVER. Google identified the IP address associated with the malware’s infrastructure as “165.227.148[.]68.”

Google says it has blocked malicious domains via its Safe Browsing system to limit potential fallout.

COLDRIVER’s targeting profile includes Western diplomats, journalists, and policy experts. This marks a significant evolution for the group, which began in 2024 by deploying another malware variant, Spica, capable of executing shell commands and handling data transfers.

The discovery of LOSTKEYS comes amid a broader surge in cyberattacks. According to a separate report by cybersecurity firm Hacken, cryptocurrency-related hacks have already inflicted over $2 billion in losses in Q1 2025, surpassing all of 2024’s totals.

Hacken attributes the spike in attacks to ongoing operational security and access control lapses, even among leading centralized and decentralized platforms. Social engineering, too, has become a favoured tactic among attackers seeking to manipulate and exploit their targets.

The bulk of these losses stem from a massive breach: the $1.5 billion hack of Bybit in February, widely believed to be the work of the North Korea-linked Lazarus Group.

 

If you want to read more news articles like this, visit DeFi Planet and follow us on Twitter, LinkedIn, Facebook, Instagram, and CoinMarketCap Community.

“Take control of your crypto portfolio with MARKETS PRO, DeFi Planet’s suite of analytics tools.”

Don't miss out!

Subscribe To Our Newsletter

Receive top education news, lesson ideas, teaching tips and more!
Invalid email address
Give it a try. You can unsubscribe at any time.
Thanks for subscribing!
Tags: COLDRIVERGoogle
Share63Tweet40Share11
Favour Okosodo

Favour Okosodo

Experienced web content writer with a strong command of SEO, specializing in creating concise, engaging content that drives traffic and enhances conversions across diverse industries.

Related Posts

source: theblock.co
Crypto

Digital Asset Inflows Hit $3.7 Billion, Pushing Crypto AUM to Record $211 Billion

14 July 2025
source: nasdaq.com
Bitcoin

Bitcoin Record High as $7 Trillion Debt Surge Sparks Flight to Sound Money

14 July 2025
source: nftnewstoday.com
Business

METABORA, LINE NEXT Team Up to Launch Web3 Games via Mini Dapp

14 July 2025
source: bitcoinmagazine.com
Bitcoin

H100 Group Raises SEK 42.9 Million to Strengthen Bitcoin Treasury Strategy

14 July 2025

Featured Posts

Is Code Law? The Legal and Moral Implications of Smart Contracts

Is Code Law? The Legal and Moral Implications of Smart Contracts

byFaari Labinjo
24 June 2025
0

Multi-Party Computation (MPC) vs. Zero-Knowledge Proofs (ZKPs): Which is the Future of Blockchain Privacy?

Multi-Party Computation (MPC) vs. Zero-Knowledge Proofs (ZKPs): Which is the Future of Blockchain Privacy?

byFaari Labinjo
7 June 2025
0

Address Poisoning Attacks in Crypto: What They Are and How to Stay Safe

Address Poisoning Attacks in Crypto: What They Are and How to Stay Safe

byOlayinka Sodiq
3 June 2025
0

What Is a Bull Trap?

What Is a Bull Trap?

byOlajumoke Oyaleke
3 June 2025
0

Breaking Bitcoin’s 21M Limit: Is It Even Possible?

Breaking Bitcoin’s 21M Limit: Is It Even Possible?

byOlayinka Sodiq
3 June 2025
0

Read More

Chain of Thoughts

The Game-changing Triumvirate: Blockchain, Data Science, and Artificial Intelligence

The Game-changing Triumvirate: Blockchain, Data Science, and Artificial Intelligence

byOlu Omoyele
30 June 2025
0

...

Are Stablecoins Bank Deposits?

Are Stablecoins Bank Deposits?

byOlu Omoyele
31 May 2025
0

...

DAOs and the Coordination of Human Endeavour

DAOs and The Coordination of Human Endeavour

byOlu Omoyele
27 April 2025
0

...

Should DeFi Be Regulated?

Should DeFi Be Regulated?

byOlu Omoyele
27 March 2025
0

...

Markets Update

Your Weekend Crypto Roundup | July 2025 (Week 2)

3 days ago

The Battle for Web3 Infrastructure: Which Platforms are Dominating in Decentralized Storage, Compute, and Identity?

6 days ago

Is Ethereum Losing the Yield Battle?

6 days ago

Dubai Greenlights Region’s First Tokenized Money Market Fund, Pioneering Real-World Asset Digitization

6 days ago

BRICS Digital Currencies & Their Threat to USD-Denominated Stablecoins

1 week ago

The U.S. Crypto Regulatory Pivot: How the FIT21 Bill & ETF Greenlights Are Reshaping Global Policy

1 week ago
Read More

Events

Rare Evo 2025
Rare Evo 2025
6 Aug 25
Las Vegas
CBDC Conference
CBDC Conference
9 Sep 25
Nassau

Spotlight

All about Ethereum
All about Algorand
All about Bitcoin
All about Gora

Press Releases

MultiBank Group Confirms $MBG Token TGE Set for July 22, 2025

bychainwire
11 July 2025
0

PEPESCAPE Launches Crypto Presale, Combining Memecoin Culture with Decentralized Finance Ecosystem

bychainwire
10 July 2025
0

$MBG Token Pre-Sale Set for July 15 — Only 7 million Tokens Available at $0.35

bychainwire
10 July 2025
0

NovaEx Launches with a Security-First Crypto Trading Platform Offering Deep Liquidity and Institutional-Grade Infrastructure

bychainwire
10 July 2025
0

Threshold Network’s tBTC is Now live on Sui: Ushering in a new era for Bitcoin DeFi

bychainwire
9 July 2025
0

Read More

ADVERTISING

ABOUT

TEAM

CAREERS

CONTACT

TERMS & CONDITIONS

PRIVACY POLICY

© Copyright 2025 DeFi Planet

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter and activate your license key for Cryptocurrency Widgets PRO plugin for unrestricted and full access of all premium features.

Add New Playlist

No Result
View All Result
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
    • Glossary
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer

© Copyright 2024 DeFi Planet   |   Terms & Conditions   |   Privacy Policy

-
00:00
00:00

Queue

Update Required Flash plugin
-
00:00
00:00