HomeNewsDecryptFake AI Tools Used to Spread Noodlophile Crypto Wallet Stealing Malware

Fake AI Tools Used to Spread Noodlophile Crypto Wallet Stealing Malware

-



In brief

  • Cybercriminals are using fake AI tools on social media to spread Noodlophile malware.
  • Malicious platforms trick users into downloading ZIP archives that steal sensitive data.
  • Noodlophile stealer, which researchers suspect originated in Vietnam, can include additional remote access trojans.

People are being tricked into downloading fake AI tools as a way to spread the information stealer malware Noodlophile.

This malware is able to harvest browser credentials, cryptocurrency wallet information and more sensitive data, according to a security researcher.

Morphisec researcher Shmuel Uzan said, in a report, “Instead of relying on traditional phishing or cracked software sites, they build convincing AI-themed platforms – often advertised via legitimate-looking Facebook groups and viral social media campaigns.”

The attackers build convincing AI themed platforms which can then be advertised on Facebook groups or social media campaigns. While these may look legitimate, they are simply fronts to get people to download the malware hidden in what appears to be AI tools.

These sorts of posts, shared on Facebook, have reached views as high as 62,000, from a single post alone.

Some of the fake social media pages identified are: Luma Dreammachine AI, Luma Dreammaching and gratistuslibros.

Once a user clicks on a post they are taken to apparently free AI editing tools and urged to upload their image or video. They are then asked to download what looks like the AI tool, but is actually a malicious ZIP archive called VideoDreamAI.zip. This leads to a Python binary paving the way to deploy the Noodlophile Stealer.

Some instances have also seen the data stealer bundled with remote access trojans like XWorm, for more control over the host’s machine and data.

The Noodlophile malware is assessed to be of Vietnamese origin, according to a GitHub profile that claims to be that of “a passionate Malware Developer from Vietnam.”

Authorities have said that cybercrime is especially prevalent in Southeast Asia and there is a history of distributing stealer software using the Facebook platform specifically.

Edited by Stacy Elliott.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.



Source link

News source: Fake AI Tools Used to Spread Noodlophile Crypto Wallet Stealing Malware
Read the full article and more directly from the source!

Enjoying our initiative? Support us with a BTC donation:
BTC Wallet: bc1q0faa2d4j9ezn29uuf7c57znsm5ueqwwfqw9gde

LATEST POSTS

How MSTR Could Have Gained 50K Extra Bitcoin With MVRV BTC Strategy

Bitcoin treasury companies have become one of the most important demand drivers in this cycle. Collectively, 86 publicly traded firms now hold...

Onramp Launches Institutional Bitcoin Custody Platform With Global Multisig Security

Onramp, a Bitcoin-only financial services company, recently launched an institutional-grade asset management offering, built on top of their multisignature, multi-institutional, multi-jurisdictional custody platform. Onramp...

Protect Your Bitcoin Wallet Now

After the less than ideal outcomes of this summer’s Tornado Cash trial and the Samourai Wallet case, it’s more important than ever...

Bitcoin Gives Me Hope, Says Knut Svanholm In Bitcoin Magazine Exclusive Interview

Knut Svanholm, the Swedish author, Bitcoiner, podcaster and educator, is a prolific writer and eccentric, charismatic persona in Bitcoinland. We don’t have...

Most Popular

spot_img