• About Us
  • Careers
  • Contact
No Result
View All Result
Saturday, June 21, 2025
DeFi Planet
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
  • News
    • People
    • Business
    • Crime
    • Regulation
    • Crypto
    • CBDC
  • Markets
    • Bitcoin
    • Ethereum
    • Stablecoins
    • Altcoins
    • Crypto ETFs
    • Memecoins
  • Policy
  • Articles
    • Press Releases
    • Opinion
    • Explainers
    • Guest Post
    • Sponsored
  • Directory
    • Companies
    • People
    • Products
    • Wallets
  • Multimedia
    • Videos
    • Podcasts
  • Learn
    • DeFi Basics
    • Tutorials
    • Reviews
    • Blockchain Fundamentals
  • Research
    • Case Studies
  • Explore
    • DeFi
    • Crypto Gaming
    • NFT
    • DAO
    • Metaverses
  • Jobs
  • Markets Pro
    • DeFi Planet Pro
    • Spend Crypto
    • Swap Crypto
    • Coin Prices
    • Crypto Exchanges
    • Crypto Analyzer
No Result
View All Result
DeFi Planet
No Result
View All Result

Google Uncovers New Malware ‘LOSTKEYS’ Used by Russian-Backed COLDRIVER Group in Sophisticated Attacks

8 May 2025
in Crypto, News
Reading Time: 3 mins read
103 6
Home News Crypto

Russian-backed cyber-espionage group COLDRIVER has ramped up its tactics with the deployment of a new malware strain known as LOSTKEYS, targeting high-profile Western individuals and organizations, according to a new report from Google Threat Intelligence.

The threat actor, previously known for its credential phishing operations, is now adopting more advanced techniques to steal sensitive documents. The LOSTKEYS malware operates through a multi-stage infection chain, beginning with a deceptive lure website that mimics CAPTCHA verification. Once a victim interacts with the site, a malicious PowerShell script is stealthily copied to their clipboard. From there, the script executes a series of evasion techniques before downloading the final payload — the LOSTKEYS malware.

Once installed, LOSTKEYS can extract files from specific directories and extensions. It also gathers detailed system information and monitors active processes, transmitting this data back to COLDRIVER. Google identified the IP address associated with the malware’s infrastructure as “165.227.148[.]68.”

Google says it has blocked malicious domains via its Safe Browsing system to limit potential fallout.

COLDRIVER’s targeting profile includes Western diplomats, journalists, and policy experts. This marks a significant evolution for the group, which began in 2024 by deploying another malware variant, Spica, capable of executing shell commands and handling data transfers.

The discovery of LOSTKEYS comes amid a broader surge in cyberattacks. According to a separate report by cybersecurity firm Hacken, cryptocurrency-related hacks have already inflicted over $2 billion in losses in Q1 2025, surpassing all of 2024’s totals.

Hacken attributes the spike in attacks to ongoing operational security and access control lapses, even among leading centralized and decentralized platforms. Social engineering, too, has become a favoured tactic among attackers seeking to manipulate and exploit their targets.

The bulk of these losses stem from a massive breach: the $1.5 billion hack of Bybit in February, widely believed to be the work of the North Korea-linked Lazarus Group.

 

If you want to read more news articles like this, visit DeFi Planet and follow us on Twitter, LinkedIn, Facebook, Instagram, and CoinMarketCap Community.

“Take control of your crypto portfolio with MARKETS PRO, DeFi Planet’s suite of analytics tools.”

Don't miss out!

Subscribe To Our Newsletter

Receive top education news, lesson ideas, teaching tips and more!
Invalid email address
Give it a try. You can unsubscribe at any time.
Thanks for subscribing!
Tags: COLDRIVERGoogle
Share63Tweet40Share11
Previous Post

Strive Asset Management to Transition into Bitcoin Treasury Firm Through Nasdaq Merger

Next Post

ZachXBT Uncovers $45M More Stolen from Coinbase Users in Ongoing Scam Epidemic

Favour Okosodo

Favour Okosodo

Experienced web content writer with a strong command of SEO, specializing in creating concise, engaging content that drives traffic and enhances conversions across diverse industries.

Related Posts

Tools for Humanity Acquires Dawn Wallet to Power Next-Gen Finance in World App
Crypto

Tools for Humanity Acquires Dawn Wallet to Power Next-Gen Finance in World App

20 June 2025
Thailand SEC Seeks Public Input on Stricter Crypto Listing Rules Amid Push for Transparency and Growth
News

Thailand SEC Seeks Public Input on Stricter Crypto Listing Rules Amid Push for Transparency and Growth

20 June 2025
Kraken Launches Native Bitcoin Staking via Babylon Integration
Bitcoin

Kraken Launches Native Bitcoin Staking via Babylon Integration

20 June 2025
Avail Launches on Binance Alpha with Airdrop and Trading Competition
Crypto

Avail Launches on Binance Alpha with Airdrop and Trading Competition

20 June 2025

Featured Posts

The Rise of AI Thieves: Can Bots Steal Your Crypto?

The Rise of AI Thieves: Can Bots Steal Your Crypto?

byOlayinka Sodiq
3 June 2025
0

Why Most DeFi Projects Fail (And What Needs to Change)

Why Most DeFi Projects Fail (And What Needs to Change)

byOlajumoke Oyaleke
15 May 2025
0

Yield-Bearing Assets in DeFi: How Do They Work and How Can You Maximize Them

Yield-Bearing Assets in DeFi: How Do They Work and How Can You Maximize Them

byFaari Labinjoand1 others
14 May 2025
0

Can DeFi Insurance Products Solve the Problem of Rug Pulls?

Can DeFi Insurance Products Solve the Problem of Rug Pulls?

byOlajumoke Oyaleke
25 April 2025
0

DeepSeek vs. ChatGPT vs Gemini vs Claude: Which AI Model Should Use For Your Crypto Tasks?

DeepSeek vs. ChatGPT vs Gemini vs Claude: Which AI Model Should Use For Your Crypto Tasks?

byOlajumoke Oyaleke
24 April 2025
0

Read More

Chain of Thoughts

Are Stablecoins Bank Deposits?

Are Stablecoins Bank Deposits?

byOlu Omoyele
31 May 2025
0

...

DAOs and the Coordination of Human Endeavour

DAOs and The Coordination of Human Endeavour

byOlu Omoyele
27 April 2025
0

...

Should DeFi Be Regulated?

Should DeFi Be Regulated?

byOlu Omoyele
27 March 2025
0

...

Is Tokenization All That It’s Cracked Up To Be?

Is Tokenization All That It’s Cracked Up To Be?

byOlu Omoyele
26 February 2025
0

...

Markets Update

Your Weekend Crypto Roundup | June 2025 (Week 3)

17 hours ago

Your Weekend Crypto Roundup | June 2025 (Week 2)

1 week ago

Your Weekend Crypto Roundup | June 2025 (Week 1)

2 weeks ago

Your Weekend Crypto Roundup | May 2025 (Week 5)

3 weeks ago

Your Weekend Crypto Roundup | May 2025 (Week 4)

4 weeks ago

Your Weekend Crypto Roundup | May 2025 (Week 3)

1 month ago
Read More

Events

  • No events
  • Spotlight

    All about Ethereum
    All about Algorand
    All about Bitcoin
    All about Gora

    Press Releases

    Meta Earth Network 2.0: Pioneering Web3 Innovation with Rewards and Global Events

    bychainwire
    20 June 2025
    0

    BitVault Raises $2M from GSR, Gemini, and Auros to Launch BTC-Backed Money

    bychainwire
    18 June 2025
    0

    TAC Raises $11.5M to Bring DeFi to Telegram’s Billion-User Ecosystem

    bychainwire
    18 June 2025
    0

    BTCC Exchange Celebrates 14th Anniversary with Launch of First-Ever User Badge Program

    bychainwire
    18 June 2025
    0

    R0AR Introduces Unified DeFi Platform for Token, Liquidity, and NFT Staking

    bychainwire
    17 June 2025
    0

    Read More

    ADVERTISING

    ABOUT

    TEAM

    CAREERS

    CONTACT

    TERMS & CONDITIONS

    PRIVACY POLICY

    © Copyright 2025 DeFi Planet

    Welcome Back!

    Login to your account below

    Forgotten Password?

    Retrieve your password

    Please enter your username or email address to reset your password.

    Log In
    Please enter and activate your license key for Cryptocurrency Widgets PRO plugin for unrestricted and full access of all premium features.

    Add New Playlist

    No Result
    View All Result
    • News
      • People
      • Business
      • Crime
      • Regulation
      • Crypto
      • CBDC
    • Markets
      • Bitcoin
      • Ethereum
      • Stablecoins
      • Altcoins
      • Crypto ETFs
      • Memecoins
    • Policy
    • Articles
      • Press Releases
      • Opinion
      • Explainers
      • Guest Post
      • Sponsored
    • Directory
      • Companies
      • People
      • Products
      • Wallets
    • Multimedia
      • Videos
      • Podcasts
    • Learn
      • DeFi Basics
      • Tutorials
      • Reviews
      • Blockchain Fundamentals
    • Research
      • Case Studies
    • Explore
      • DeFi
      • Crypto Gaming
      • NFT
      • DAO
      • Metaverses
    • Jobs
    • Markets Pro
      • DeFi Planet Pro
      • Spend Crypto
      • Swap Crypto
      • Coin Prices
      • Crypto Exchanges
      • Crypto Analyzer

    © Copyright 2024 DeFi Planet   |   Terms & Conditions   |   Privacy Policy

    -
    00:00
    00:00

    Queue

    Update Required Flash plugin
    -
    00:00
    00:00