• About
  • FAQ
  • Contact Us
Newsletter
Crypto News
Advertisement
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
  • News
  • Market
  • Analysis
  • DeFi & NFTs
  • Guides
  • Tools
  • Flash
  • Insights
  • Subscribe
No Result
View All Result
  • Home
    • Home – Layout 1
    • Home – Layout 2
    • Home – Layout 3
  • News
  • Market
  • Analysis
  • DeFi & NFTs
  • Guides
  • Tools
  • Flash
  • Insights
  • Subscribe
No Result
View All Result
Crypto News
No Result
View All Result
Home Analysis

Malware Campaign Spreads Fake Wallet Seed Phrases Through Hacked Mailing Lists

admin by admin
April 25, 2025
in Analysis
0
Malware Campaign Spreads Fake Wallet Seed Phrases Through Hacked Mailing Lists
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


Threat analysts have uncovered a sophisticated, two-pronged malware campaign targeting victims both inside and outside of the crypto industry.

In a recent report, cyber intelligence firm Silent Push identified the PoisonSeed malware campaign, which initially targets the users of bulk email providers including Mailchimp and SendGrid.

Related articles

ASIC Sues Former Blockchain Global Exec Over M in Unpaid Customer Claims

ASIC Sues Former Blockchain Global Exec Over $20M in Unpaid Customer Claims

May 28, 2025
Cetus Reveals Recovery Plan, Taps SUI for Bridge Loan

Cetus Reveals Recovery Plan, Taps SUI for Bridge Loan

May 28, 2025
A fake Mailchimp page generated as part of the PoisonSeed malware campaign.
A fake Mailchimp page generated as part of the PoisonSeed malware campaign. Image: Silent Push

In one case, a content creator was sent a fraudulent message that claimed their account had been restricted—and they were duped into providing their login details through a bogus but “pixel-perfect” website.

A fake SendGrid page generated as part of the PoisonSeed malware campaign.
A fake SendGrid page generated as part of the PoisonSeed malware campaign. Image: Silent Push

From here, their mailing lists are downloaded en masse, in a process that Silent Push describes as “extremely quick and likely automated.”

The next step sees unsuspecting subscribers sent emails purporting to be from crypto exchange Coinbase, which claim that the exchange is “transitioning to self-custodial wallets.”

A 12-word seed phrase is provided, which the victims of the scam are told to import into their account—but doing so would give malicious actors the freedom to drain all of the crypto out of their wallet.

A phishing email purporting to be from Coinbase.
PoisonSeed victims are sent a phishing email purporting to be from Coinbase. Image: Silent Push

One of the Mailchimp customers affected, Microsoft regional director Troy Hunt, said he received the phishing email when he was “really jet lagged and really tired,” leaving him vulnerable.

Although the penny dropped that something wasn’t right immediately after he entered his login details—and he promptly changed his password—the mailing list had already been exported.

“Reading it again now, that’s a very well-crafted phish,” Hunt wrote. “It socially engineered me into believing I wouldn’t be able to send out my newsletter so it triggered ‘fear,’ but it wasn’t all bells and whistles about something terrible happening if I didn’t take immediate action. It created just the right amount of urgency without being over the top.”

Silent Push said that it is treating PoisonSeed as being distinct from two “loosely aligned threat actors” called Scattered Spider and CryptoChameleon—despite the fact these campaigns use similar phishing domains, and have targeted Coinbase and Ledger users in the past.

It’s a sobering illustration that it isn’t just consumers who need to be vigilant in the face of social engineering scams, but also content creators with large audiences for their newsletters.

Daily Debrief Newsletter

Start every day with the top news stories right now, plus original features, a podcast, videos and more.



#Malware #Campaign #Spreads #Fake #Wallet #Seed #Phrases #Hacked #Mailing #Lists

Tags: 7 cents the cryptocurrency hasall of the cryptoblockquote but bitcoincampaignclass wp caption text about 130coinbase bitcoin premium index it measurescommunity driven project highlighting storescooperation as well as thecrypto policy groups was confirmedFakefalse zksyncgrowth for the zkevm network whichHackedit s that people willListsmailingmalwaremalware campaign spreads fake walletmarket cap p p class fontnotably cme bitcoin futures arepeople receiving pip this isPhrasesregions crypto shoulds true expecting the bitcoinSEEDSpreadsspreads fake wallet seedstage kasperskytoken to distributing yourtop color fcb11e important border topWalletwhether it is argentina whether itwhistles about something terrible happening ifyears the bitcoin native
Share76Tweet47

Related Posts

ASIC Sues Former Blockchain Global Exec Over M in Unpaid Customer Claims

ASIC Sues Former Blockchain Global Exec Over $20M in Unpaid Customer Claims

by admin
May 28, 2025
0

In brief ASIC has filed civil charges against former Blockchain Global director Liang Guo over alleged misuse of ACX customer...

Cetus Reveals Recovery Plan, Taps SUI for Bridge Loan

Cetus Reveals Recovery Plan, Taps SUI for Bridge Loan

by admin
May 28, 2025
0

Six days after a $223 million exploit shook the Sui ecosystem, decentralized exchange Cetus has announced a recovery initiative that...

El Salvador Defies IMF Again With Fresh Bitcoin Purchase Following Loan Review

El Salvador Defies IMF Again With Fresh Bitcoin Purchase Following Loan Review

by admin
May 28, 2025
0

In brief El Salvador added eight more Bitcoin to its reserve despite IMF warnings An IMF agreement struck on Tuesday...

AI and Crypto Czar David Sacks Says the US Could Buy More Bitcoin

AI and Crypto Czar David Sacks Says the US Could Buy More Bitcoin

by admin
May 28, 2025
0

In brief AI and Crypto Czar David Sacks appeared at Bitcoin 2025 in Las Vegas on Tuesday. Sacks suggested that...

Ethereum Options Market Signals Cautious Optimism as Open Interest Climbs

Ethereum Options Market Signals Cautious Optimism as Open Interest Climbs

by admin
May 28, 2025
0

In brief Amberdata data shows only a 12% chance of ETH exceeding $5,000 by December 2025. Retail traders are targeting...

Load More
  • Trending
  • Comments
  • Latest
Bitcoin and Ethereum Stuck in Range, DOGE and XRP Gain

Bitcoin and Ethereum Stuck in Range, DOGE and XRP Gain

April 25, 2025
Saylor says Warren Buffett’s Berkshire Hathaway is Bitcoin of 20th century – Deep Insight

Saylor says Warren Buffett’s Berkshire Hathaway is Bitcoin of 20th century – Deep Insight

May 7, 2025
Amazon CEO on Crypto and NFTs, EPNS to Expand Beyond Ethereum + More News

Amazon CEO on Crypto and NFTs, EPNS to Expand Beyond Ethereum + More News

April 25, 2025
Why DeFi agents need a private brain

Why DeFi agents need a private brain

May 4, 2025
US Commodities Regulator Beefs Up Bitcoin Futures Review

US Commodities Regulator Beefs Up Bitcoin Futures Review

0
Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

Bitcoin Hits 2018 Low as Concerns Mount on Regulation, Viability

0
India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

India: Bitcoin Prices Drop As Media Misinterprets Gov’s Regulation Speech

0
Bitcoin’s Main Rival Ethereum Hits A Fresh Record High: 5.55

Bitcoin’s Main Rival Ethereum Hits A Fresh Record High: $425.55

0
ASIC Sues Former Blockchain Global Exec Over M in Unpaid Customer Claims

ASIC Sues Former Blockchain Global Exec Over $20M in Unpaid Customer Claims

May 28, 2025
Crypto czar Sacks says US could possibly ‘acquire more Bitcoin’

Crypto czar Sacks says US could possibly ‘acquire more Bitcoin’

May 28, 2025
Bitcoin Traders Eye New Highs by End of Summer; Ether Rises 3% on Treasury Optimism

Bitcoin Traders Eye New Highs by End of Summer; Ether Rises 3% on Treasury Optimism

May 28, 2025
Cetus Reveals Recovery Plan, Taps SUI for Bridge Loan

Cetus Reveals Recovery Plan, Taps SUI for Bridge Loan

May 28, 2025
  • About
  • FAQ
  • Contact Us
Call us: +1 23456 JEG THEME

© 2025 Btc04.com

No Result
View All Result
  • Home
  • News
  • Market
  • Analysis
  • DeFi & NFTs
  • Guides
  • Tools
  • Flash
  • Insights
  • Subscribe
  • Contact Us

© 2025 Btc04.com