• bitcoinBitcoin (BTC) $ 112,305.00
  • ethereumEthereum (ETH) $ 3,383.72
  • tetherTether (USDT) $ 0.999674
  • xrpXRP (XRP) $ 2.77
  • bnbBNB (BNB) $ 737.23
  • solanaSolana (SOL) $ 156.35
  • usd-coinUSDC (USDC) $ 0.999716
  • staked-etherLido Staked Ether (STETH) $ 3,379.35
  • tronTRON (TRX) $ 0.319336
  • dogecoinDogecoin (DOGE) $ 0.190818
  • cardanoCardano (ADA) $ 0.688691
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 112,173.00
  • wrapped-stethWrapped stETH (WSTETH) $ 4,082.16
  • hyperliquidHyperliquid (HYPE) $ 35.83
  • suiSui (SUI) $ 3.29
  • stellarStellar (XLM) $ 0.363659
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 3,635.35
  • chainlinkChainlink (LINK) $ 15.50
  • bitcoin-cashBitcoin Cash (BCH) $ 523.63
  • hedera-hashgraphHedera (HBAR) $ 0.226627
  • wrapped-eethWrapped eETH (WEETH) $ 3,629.71
  • avalanche-2Avalanche (AVAX) $ 20.76
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • the-open-networkToncoin (TON) $ 3.51
  • leo-tokenLEO Token (LEO) $ 8.96
  • litecoinLitecoin (LTC) $ 105.16
  • wethWETH (WETH) $ 3,383.67
  • usdsUSDS (USDS) $ 0.999609
  • shiba-inuShiba Inu (SHIB) $ 0.000012
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.998999
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 112,404.00
  • whitebitWhiteBIT Coin (WBT) $ 41.84
  • moneroMonero (XMR) $ 292.45
  • uniswapUniswap (UNI) $ 8.74
  • polkadotPolkadot (DOT) $ 3.45
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.18
  • bitget-tokenBitget Token (BGB) $ 4.23
  • pepePepe (PEPE) $ 0.000010
  • crypto-com-chainCronos (CRO) $ 0.123795
  • aaveAave (AAVE) $ 246.90
  • daiDai (DAI) $ 1.00
  • ethenaEthena (ENA) $ 0.522971
  • bittensorBittensor (TAO) $ 328.68
  • ethereum-classicEthereum Classic (ETC) $ 19.11
  • nearNEAR Protocol (NEAR) $ 2.31
  • okbOKB (OKB) $ 45.88
  • aptosAptos (APT) $ 4.07
  • pi-networkPi Network (PI) $ 0.349695
  • ondo-financeOndo (ONDO) $ 0.851707
  • internet-computerInternet Computer (ICP) $ 4.88
  • jito-staked-solJito Staked SOL (JITOSOL) $ 191.15
  • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
  • mantleMantle (MNT) $ 0.679959
  • usd1-wlfiUSD1 (USD1) $ 0.998290
  • kaspaKaspa (KAS) $ 0.080451
  • binance-peg-wethBinance-Peg WETH (WETH) $ 3,375.06
  • pudgy-penguinsPudgy Penguins (PENGU) $ 0.031569
  • gatechain-tokenGate (GT) $ 16.53
  • fasttokenFasttoken (FTN) $ 4.58
  • algorandAlgorand (ALGO) $ 0.224724
  • bonkBonk (BONK) $ 0.000024
  • vechainVeChain (VET) $ 0.021825
  • arbitrumArbitrum (ARB) $ 0.362895
  • cosmosCosmos Hub (ATOM) $ 4.03
  • susdssUSDS (SUSDS) $ 1.06
  • render-tokenRender (RENDER) $ 3.36
  • polygon-ecosystem-tokenPOL (ex-MATIC) (POL) $ 0.191201
  • story-2Story (IP) $ 5.76
  • official-trumpOfficial Trump (TRUMP) $ 8.48
  • worldcoin-wldWorldcoin (WLD) $ 0.916371
  • binance-staked-solBinance Staked SOL (BNSOL) $ 166.60
  • skySky (SKY) $ 0.076106
  • jupiter-perpetuals-liquidity-provider-tokenJupiter Perpetuals Liquidity Provider Token (JLP) $ 4.78
  • rocket-pool-ethRocket Pool ETH (RETH) $ 3,847.58
  • fetch-aiArtificial Superintelligence Alliance (FET) $ 0.606019
  • lombard-staked-btcLombard Staked BTC (LBTC) $ 112,187.00
  • quant-networkQuant (QNT) $ 106.06
  • sei-networkSei (SEI) $ 0.264488
  • filecoinFilecoin (FIL) $ 2.23
  • flare-networksFlare (FLR) $ 0.021751
  • kelp-dao-restaked-ethKelp DAO Restaked ETH (RSETH) $ 3,544.48
  • xdce-crowd-saleXDC Network (XDC) $ 0.090578
  • usdtbUSDtb (USDTB) $ 0.999703
  • usdt0USDT0 (USDT0) $ 0.998303
  • spx6900SPX6900 (SPX) $ 1.43
  • kucoin-sharesKuCoin (KCS) $ 10.42
  • hash-2Provenance Blockchain (HASH) $ 0.027732
  • jupiter-exchange-solanaJupiter (JUP) $ 0.429417
  • first-digital-usdFirst Digital USD (FDUSD) $ 0.995836
  • stakewise-v3-osethStakeWise Staked ETH (OSETH) $ 3,556.37
  • nexoNEXO (NEXO) $ 1.27
  • liquid-staked-ethereumLiquid Staked ETH (LSETH) $ 3,654.08
  • mantle-staked-etherMantle Staked Ether (METH) $ 3,619.13
  • polygon-bridged-usdt-polygonPolygon Bridged USDT (Polygon) (USDT) $ 0.999633
  • falcon-financeFalcon USD (USDF) $ 0.999328
  • curve-dao-tokenCurve DAO (CRV) $ 0.858036
  • blockstackStacks (STX) $ 0.657629
  • injective-protocolInjective (INJ) $ 12.02
  • celestiaCelestia (TIA) $ 1.55
  • solv-btcSolv Protocol BTC (SOLVBTC) $ 112,204.00
  • renzo-restaked-ethRenzo Restaked ETH (EZETH) $ 3,558.05
  • optimismOptimism (OP) $ 0.618589
  • paypal-usdPayPal USD (PYUSD) $ 0.999291
  • binance-bridged-usdc-bnb-smart-chainBinance Bridged USDC (BNB Smart Chain) (USDC) $ 0.998319
  • wbnbWrapped BNB (WBNB) $ 735.45
  • flokiFLOKI (FLOKI) $ 0.000099
  • pax-goldPAX Gold (PAXG) $ 3,357.76
  • conflux-tokenConflux (CFX) $ 0.187188
  • jupiter-staked-solJupiter Staked SOL (JUPSOL) $ 176.08
  • saros-financeSaros (SAROS) $ 0.348998
  • sonic-3Sonic (S) $ 0.280960
  • the-graphThe Graph (GRT) $ 0.086304
  • immutable-xImmutable (IMX) $ 0.473639
  • arbitrum-bridged-wbtc-arbitrum-oneArbitrum Bridged WBTC (Arbitrum One) (WBTC) $ 112,091.00
  • pump-funPump.fun (PUMP) $ 0.002536
  • fartcoinFartcoin (FARTCOIN) $ 0.886013
  • pancakeswap-tokenPancakeSwap (CAKE) $ 2.50
  • clbtcclBTC (CLBTC) $ 111,637.00
  • syrupusdcSyrupUSDC (SYRUPUSDC) $ 1.11
  • tether-goldTether Gold (XAUT) $ 3,345.80
  • dogwifcoindogwifhat (WIF) $ 0.823982
  • msolMarinade Staked SOL (MSOL) $ 205.15
  • ethereum-name-serviceEthereum Name Service (ENS) $ 24.37
  • kaiaKaia (KAIA) $ 0.137003
  • lido-daoLido DAO (LDO) $ 0.856516
  • tezosTezos (XTZ) $ 0.723111
  • vaultaVaulta (A) $ 0.478687
  • virtual-protocolVirtuals Protocol (VIRTUAL) $ 1.14
  • super-oethSuper OETH (SUPEROETH) $ 3,379.96
  • cgeth-hashkey-cloudcgETH Hashkey Cloud (CGETH.HASH) $ 3,565.29
  • theta-tokenTheta Network (THETA) $ 0.715253
  • mantle-restaked-ethMantle Restaked ETH (CMETH) $ 3,624.47
  • ousgOUSG (OUSG) $ 112.03
  • ether-fi-staked-ethether.fi Staked ETH (EETH) $ 3,370.42
  • memecoreMemeCore (M) $ 0.412656
  • ondo-us-dollar-yieldOndo US Dollar Yield (USDY) $ 1.09
  • jasmycoinJasmyCoin (JASMY) $ 0.014059
  • iotaIOTA (IOTA) $ 0.172703
  • usdx-money-usdxStables Labs USDX (USDX) $ 0.997901
  • raydiumRaydium (RAY) $ 2.45
  • galaGALA (GALA) $ 0.014366
  • tbtctBTC (TBTC) $ 112,018.00
  • aerodrome-financeAerodrome Finance (AERO) $ 0.732323
  • bittorrentBitTorrent (BTT) $ 0.00000064
  • the-sandboxThe Sandbox (SAND) $ 0.253897
  • l2-standard-bridged-weth-baseL2 Standard Bridged WETH (Base) (WETH) $ 3,385.50
  • pendlePendle (PENDLE) $ 3.68
  • pyth-networkPyth Network (PYTH) $ 0.105819
  • ripple-usdRipple USD (RLUSD) $ 0.999954
  • newton-projectAB (AB) $ 0.008257
  • usual-usdUsual USD (USD0) $ 0.997634
  • jito-governance-tokenJito (JTO) $ 1.61
  • usddUSDD (USDD) $ 0.999373
  • zcashZcash (ZEC) $ 34.81
  • flowFlow (FLOW) $ 0.346764
  • bitcoin-avalanche-bridged-btc-bAvalanche Bridged BTC (Avalanche) (BTC.B) $ 112,261.00
  • solv-protocol-solvbtc-bbnSolv Protocol Staked BTC (XSOLVBTC) $ 111,824.00
  • beldexBeldex (BDX) $ 0.075423
  • stader-ethxStader ETHx (ETHX) $ 3,604.03
  • arbitrum-bridged-weth-arbitrum-oneArbitrum Bridged WETH (Arbitrum One) (WETH) $ 3,386.55
  • walrus-2Walrus (WAL) $ 0.361788
  • heliumHelium (HNT) $ 2.75
  • morphoMorpho (MORPHO) $ 1.58
  • decentralandDecentraland (MANA) $ 0.263791
  • bitcoin-svBitcoin SV (BSV) $ 25.26
  • true-usdTrueUSD (TUSD) $ 0.998053
  • binance-peg-dogecoinBinance-Peg Dogecoin (DOGE) $ 0.190502
  • coinbase-wrapped-staked-ethCoinbase Wrapped Staked ETH (CBETH) $ 3,727.99
  • build-onBUILDon (B) $ 0.478763
  • chain-2Onyxcoin (XCN) $ 0.013806
  • apenftAPENFT (NFT) $ 0.00000047
  • syrupMaple Finance (SYRUP) $ 0.387178
  • coredaoorgCore (CORE) $ 0.454322
  • based-brettBrett (BRETT) $ 0.045898
  • swethSwell Ethereum (SWETH) $ 3,710.86
  • savings-daiSavings Dai (SDAI) $ 1.16
  • superstate-short-duration-us-government-securities-fund-ustbSuperstate Short Duration U.S. Government Securities Fund (USTB) (USTB) $ 10.77
  • mog-coinMog Coin (MOG) $ 0.000001
  • telcoinTelcoin (TEL) $ 0.004672
  • thorchainTHORChain (RUNE) $ 1.23
  • rekt-4Rekt (REKT) $ 0.000001
  • tokenize-xchangeTokenize Xchange (TKX) $ 5.30
  • apecoinApeCoin (APE) $ 0.529721
  • mantle-bridged-usdt-mantleMantle Bridged USDT (Mantle) (USDT) $ 0.999468
  • starknetStarknet (STRK) $ 0.108934
  • kavaKava (KAVA) $ 0.382413
  • reserve-rights-tokenReserve Rights (RSR) $ 0.007033
  • hashnote-usycCircle USYC (USYC) $ 1.10
  • frax-etherFrax Ether (FRXETH) $ 3,404.93
  • compound-governance-tokenCompound (COMP) $ 43.35
  • usdbUSDB (USDB) $ 0.995820
  • zebec-networkZebec Network (ZBCN) $ 0.004698
  • tripTrip (TRIP) $ 13.64
  • polygon-pos-bridged-dai-polygon-posPolygon PoS Bridged DAI (Polygon POS) (DAI) $ 0.999663
  • sun-tokenSun Token (SUN) $ 0.020873
  • arweaveArweave (AR) $ 6.09
  • dexeDeXe (DEXE) $ 6.96
  • dydx-chaindYdX (DYDX) $ 0.522506
  • neoNEO (NEO) $ 5.57
  • polygon-pos-bridged-weth-polygon-posPolygon PoS Bridged WETH (Polygon POS) (WETH) $ 3,383.14

Bom malware robs users of over $1.82 million: SlowMist

0 31

Bom malware robs users of over $1.82 million: SlowMist

A mass cryptocurrency heist plan has been identified following different users reporting unauthorized access to their wallet balances on February 14, 2025.

Security firms SlowMist and OKX have released a joint report showing that they have found that a rogue app called BOM was responsible for the attacks.

The study established that BOM was intended to deceive users into providing access to their photo library and local storage. Upon the provision of permissions, the application secretly scanned for screenshots or photos with wallet mnemonic phrases or private keys. The latter were posted to the servers of the attackers.

As per MistTrack, the malware has impacted no less than 13,000 users, with total stolen funds amounting to over $1.82 million. The attackers transferred funds on different blockchains such as Ethereum, BSC, Polygon, Arbitrum, and Base in an attempt to hide their actions.

Malware analysis shows data gathering scheme

Analysis by the OKX Web3 security team showed that the app was built with the UniApp cross-platform framework. This was an architecture designed for extracting sensitive data. BOM asks permission to access the device photo gallery and local files upon installation. The app misleadingly states that permissions are required for the app to work normally.

Decompilation of the app revealed its main purpose centered on retrieving and uploading user information. When users visited the contract page on the app, they activated functions that scanned and gathered media files from the storage of the device. These were packaged and uploaded to a distant remote server managed by the attackers.

The code in the application had functions such as “androidDoingUp” and “uploadBinFa,” whose sole purpose was to download images and videos from the device and upload them to the attackers. The reporting URL employed a domain that was obtained from the app’s local cache; hence, it was not easy for the users to trace the destination of their data.

The scam app also had an anomalous signature subject with random letters (“adminwkhvjv”) instead of the meaningful letters normally used in authentic apps. This aspect also established the app as fraudulent.

On-chain fund analysis traces stolen asset flows

Blockchain analysis of the theft shows fund flows on several networks. The main theft address initiated its initial transaction on February 12, 2025, with the receipt of 0.001 BNB from the address.

On the BSC chain, the attackers made around $37,000 worth of profits, largely in USDC, USDT, and WBTC. The hackers frequently used PancakeSwap to exchange different tokens into BNB. As of now, this address has 611 BNB and around $120,000 worth of tokens, such as USDT, DOGE, and FIL.

The Ethereum network experienced the most theft, losing around $280,000. The majority of these funds resulted from cross-chain ETH transfers from other networks. The attackers deposited 100 ETH into a backup address, to which 160 ETH was transferred from another connected address. Overall, 260 ETH are held at this address with no additional movement.

On Polygon, attackers reaped around $65,000 worth of tokens, including WBTC, SAND, and STG. The majority of these funds were exchanged on OKX-DEX for almost 67,000 POL. Further theft was observed on Arbitrum ($37,000) and Base ($12,000), with the majority of tokens being exchanged for ETH and bridged onto the Ethereum network.

Source

Leave A Reply

Your email address will not be published.

Verified by MonsterInsights