The latest report details a sophisticated malware campaign involving Trojan.Scavenger that exploits DLL search hijacking in Windows to target crypto wallets and password managers. The campaign employs multi-stage loaders and manipulates browser extensions and crypto-wallets to steal sensitive data. #TrojanScavenger #DLLHijacking #CryptoWallets #PasswordManagers
Keypoints
- The Trojan.Scavenger malware campaign leverages DLL hijacking to infect Windows systems.
- Attackers use bait like game patches and cheats to lure victims into executing malicious files.
- Once inside, the malware targets browsers and crypto wallets to extract sensitive data such as mnemonic phrases and private keys.
- The malware employs multi-stage loaders and disguises as legitimate files to bypass security measures.
- Many app developers do not patch the DLL hijacking vulnerability, increasing the risk to users.
Read More: https://hackread.com/scavenger-trojan-crypto-wallets-game-mods-browser-flaws/