Thursday, November 13, 2025
cryptonews100
No Result
View All Result
CryptoNews100
No Result
View All Result
Home Cryptocurrency

VirusTotal Finds 44 Undetected SVG Files Used to Deploy Base64-Encoded Phishing Pages

cryptonews100_tggfrn by cryptonews100_tggfrn
September 5, 2025
in Cryptocurrency
0
VirusTotal Finds 44 Undetected SVG Files Used to Deploy Base64-Encoded Phishing Pages
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
Sign up an get up to $1000 USDT!


(*44*)Sep 05, 2025Ravie LakshmananMalware / Cryptocurrency

(*44*)Cybersecurity researchers have flagged a brand new malware marketing campaign that has leveraged Scalable Vector Graphics (SVG) information as a part of phishing assaults impersonating the Colombian judicial system.

(*44*)The SVG information, in accordance to VirusTotal, are distributed by way of electronic mail and designed to execute an embedded JavaScript payload, which then decodes and injects a Base64-encoded HTML phishing web page masquerading as a portal for Fiscalía Normal de la Nación, the Workplace of the Lawyer Normal of Colombia.

(*44*)The web page then simulates an official authorities doc obtain course of with a pretend progress bar, whereas it stealthily triggers the obtain of a ZIP archive within the background. The precise nature of the ZIP file was not disclosed.

(*44*)The Google-owned malware scanning service stated it discovered 44 distinctive SVG information, all of which have remained undetected by antivirus engines, owing to using methods like obfuscation, polymorphism, and enormous quantities of junk code to evade static detection strategies.

(*44*)In all, as many as 523 SVG information have been detected within the wild, with the earliest pattern courting again to August 14, 2025.

Audit and Beyond

(*44*)”Wanting deeper, we noticed that the earliest samples have been bigger, round 25 MB, and the dimensions decreased over time, suggesting the attackers have been evolving their payloads,” VirusTotal stated.

(*44*)The disclosure comes as cracked variations of official software program and ClickFix-style techniques are getting used to lure customers into infecting their Apple macOS techniques with an info stealer known as Atomic macOS Stealer (AMOS), exposing companies to credential stuffing, monetary theft, and different follow-on assaults.

(*44*)”AMOS is designed for broad information theft, able to stealing credentials, browser information, cryptocurrency wallets, Telegram chats, VPN profiles, keychain objects, Apple Notes, and information from frequent folders,” Development Micro said. “AMOS exhibits that macOS is not a peripheral goal. As macOS gadgets acquire floor in enterprise settings, they’ve turn out to be a extra engaging and profitable focus for attackers.”

(*44*)The assault chain primarily includes focusing on customers searching for cracked software program on websites like haxmac[.]cc, redirecting them to bogus obtain hyperlinks that present set up directions designed to trick them into operating malicious instructions on the Terminal app, thus triggering the deployment of AMOS.

(*44*)It is value noting that Apple prevents the set up of .dmg information missing correct notarization due to macOS’s Gatekeeper protections, which require the applying packages to be signed by an recognized developer and notarized by Apple.

(*44*)”With the discharge of macOS Sequoia, makes an attempt to set up malicious or unsigned .dmg information, reminiscent of these utilized in AMOS campaigns, are blocked by default,” the corporate added. “Whereas this does not eradicate the chance completely, particularly for customers who might bypass built-in protections, it raises the barrier for profitable infections and forces attackers to adapt their supply strategies.”

CIS Build Kits

(*44*)This is the reason menace actors are more and more banking on ClickFix, because it permits the stealer to be put in on the machine utilizing Terminal by way of a curl command specified within the software program obtain web page.

(*44*)”Whereas macOS Sequoia’s enhanced Gatekeeper protections efficiently blocked conventional .dmg-based infections, menace actors shortly pivoted to terminal-based set up strategies that proved more practical in bypassing safety controls,” Development Micro stated. “This shift highlights the significance of defense-in-depth methods that do not rely solely on built-in working system protections.”

(*44*)The event additionally follows the invention of a “sprawling cyber marketing campaign” that is focusing on avid gamers looking out for cheats with StealC stealer and crypto theft malware, netting the menace actors greater than $135,000.

(*44*)Per CyberArk, the exercise is notable for leveraging StealC’s loader capabilities to obtain further payloads, on this case, a cryptocurrency stealer that may siphon digital property from customers on contaminated machines.



Source link

Related articles

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

November 13, 2025
1 Brand-New Catalyst for Solana That Could Portend Great Returns Ahead

Grab 3 Bitcoin-Centric Stocks Before the Cryptocurrency’s Next Rally

November 12, 2025
Tags: Base64EncodeddeployFilesfindspagesPhishingSVGUndetectedVirusTotal
Share76Tweet47
Drive and walk to earn crypto!

Related Posts

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

by cryptonews100_tggfrn
November 13, 2025
0

Authorities angle and definition The BVI has established itself as a number one offshore finance centre that's resilient, agile and...

1 Brand-New Catalyst for Solana That Could Portend Great Returns Ahead

Grab 3 Bitcoin-Centric Stocks Before the Cryptocurrency’s Next Rally

by cryptonews100_tggfrn
November 12, 2025
0

The cryptocurrency market has been taking a success recently, as a number of components which have raised uncertainties about the...

Zhimin Qian: Chinese ‘cryptoqueen’ who had royal aspirations jailed in UK over $6.6 billion Bitcoin scam

Zhimin Qian: Chinese ‘cryptoqueen’ who had royal aspirations jailed in UK over $6.6 billion Bitcoin scam

by cryptonews100_tggfrn
November 12, 2025
0

London AP  —  A Chinese lady who was discovered with 5 billion kilos ($6.6 billion) in Bitcoin after defrauding greater...

Prosecution Seeks Arrest of Police Chief in Cryptocurrency Bribery Case

Prosecution Seeks Arrest of Police Chief in Cryptocurrency Bribery Case

by cryptonews100_tggfrn
November 12, 2025
0

The prosecution has confirmed that it requested a bench warrant for a present police station chief suspected of receiving bribes...

Cryptocurrencies: Monetary Alternative Or Mass Delusion? – Seeking Alpha

Cryptocurrencies: Monetary Alternative Or Mass Delusion? – Seeking Alpha

by cryptonews100_tggfrn
November 12, 2025
0

BOQ blockings transfers to cryptocurrency exchanges efficient 11 March 2025. (We could do that if we fairly imagine the switch...

Load More

Crypto Fear & Greed Index

Latest Crypto Fear & Greed Index

Recent News

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

A guide to blockchain and cryptocurrency laws and regulations 2026: British Virgin Islands (GLI chapter) | Carey Olsen

November 13, 2025
Solana Outpaces Ethereum in Transactions with Unified Architecture

Solana Outpaces Ethereum in Transactions with Unified Architecture

November 13, 2025
Crypto Markets Rallying to End 2025 Would Have Been a Risk for 2026

Crypto Markets Rallying to End 2025 Would Have Been a Risk for 2026

November 13, 2025

Categories

  • Bitcoin
  • Cardano
  • Chainlink
  • Cryptocurrency
  • Dogecoin
  • Ethereum
  • Exchanges
  • Pokadot
  • Polygon
  • Real World Assets
  • Shiba Inu
  • Solana
  • sui
  • World Liberty Financial
  • XRP

Download the official CryptoNews100 Android App! Click the button below:

Tags

ADA (147) Altcoins (106) Analysts (97) Bitcoin (623) BTC (156) Buy (275) Cardano (312) ChainLink (236) crypto (885) Cryptocurrency (283) DOGE (135) Dogecoin (312) DOT (100) ETF (174) ETH (172) Ethereum (432) eyes (97) gains (103) Inu (237) investors (112) launches (102) Link (94) market (261) million (109) News (339) Polkadot (181) POLYGON (132) prediction (217) Presale (189) price (663) rally (161) Remittix (116) RWA (135) Shiba (246) SOL (94) Solana (375) Sui (231) Surge (93) today (104) token (115) top (214) TradingView (107) Trump (135) world (95) XRP (491)

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.

No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Alt Coins
    • Cardano
    • Dogecoin
    • Litecoin
    • Pokadot
    • Polygon
    • Shiba Inu
    • Solana
    • XRP
  • Crypto Related DEALS

© 2023 Crypto News100 All Rights Reserved.
By visiting this website, you understand that the content provided within is for educational and entertainment purposes only. Nothing on this site may be constituted as financial advice and this site is not directing you to make any investments in cryptocurrency or in anything else. Thank you for visiting and please proceed responsibly.
As an Amazon Associate I earn from qualifying purchases.