• About
  • Landing Page
  • Buy JNews
Newsletter
Impact Crypto News
Advertisement
  • Home
  • DeFi News
  • EVM News
    • Avalanche Network
    • Ethereum
    • Fantom Opera Chain
    • Harmony Chain
    • Huobi Eco Chain
    • Polkadot Chain
    • Polygon Chain
  • NFT News
  • Altcoin News
  • Crypto News
    • Crypto Regulation News
    • Bitcoin
    • Blockchain
    • Crypto Exchanges
    • Crypto Mining
    • Metaverse
    • Scam News
    • Web 3.0
No Result
View All Result
  • Home
  • DeFi News
  • EVM News
    • Avalanche Network
    • Ethereum
    • Fantom Opera Chain
    • Harmony Chain
    • Huobi Eco Chain
    • Polkadot Chain
    • Polygon Chain
  • NFT News
  • Altcoin News
  • Crypto News
    • Crypto Regulation News
    • Bitcoin
    • Blockchain
    • Crypto Exchanges
    • Crypto Mining
    • Metaverse
    • Scam News
    • Web 3.0
No Result
View All Result
Impact Crypto News
No Result
View All Result
Home Crypto News Ethereum

Malware Steals Over $1.82 Million from 13,000+ Crypto Users: SlowMist Report

IMPACTCRYPTO by IMPACTCRYPTO
February 27, 2025
in Ethereum
57 1
0
Malware Steals Over .82 Million from 13,000+ Crypto Users: SlowMist Report
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter


KeyTakeaways:

  • BOM malware stole over $1.82 million from 13,000+ cryptocurrency users.  
  • Attackers used cross-chain transfers to launder stolen funds across multiple blockchains.  
  • Malware exploited device permissions to steal wallet information and send it to remote servers.

A new malware campaign has resulted in a massive cryptocurrency theft, with attackers stealing more than $1.82 million from over 13,000 victims. According to a joint investigation by security firms SlowMist and OKX, the rogue app, known as BOM, has been identified as the source of the breach. The attack targeted users of crypto wallets, exploiting vulnerabilities to steal sensitive data such as mnemonic phrases and private keys.

The BOM malware was designed to trick users into granting it access to their photo libraries and local storage. Upon installation, the app misleadingly requested these permissions, claiming they were necessary to function correctly. Once granted, BOM secretly scanned the device for images containing sensitive information, such as wallet mnemonic phrases or private keys.

These stolen details were then uploaded to remote servers controlled by the attackers. This process was carried out without the user’s knowledge, making it difficult to trace the malware’s actions. OKX’s Web3 security team analysis revealed that the BOM app was built using the UniApp cross-platform framework, a tool commonly used for extracting sensitive data. 

Stolen Funds Traced Across Multiple Blockchains

Blockchain analysis has helped trace the stolen funds across multiple cryptocurrency networks. The main attack address was activated on February 12, 2025, when it received 0.001 BNB. From there, the attackers moved funds across various blockchains, including Ethereum, Binance Smart Chain (BSC), Polygon, Arbitrum, and Base.

The attackers made approximately $37,000 on the BSC network, mostly in USDC, USDT, and WBTC. They used PancakeSwap to exchange these tokens into BNB. The Ethereum network saw the largest losses, totaling around $280,000. These funds were primarily the result of cross-chain ETH transfers. A backup address received 100 ETH and 160 ETH from another address. As of now, this address holds 260 ETH with no further activity.

Smaller Losses Observed on Other Networks

The attackers also managed to steal funds from the Polygon, Arbitrum, and Base networks. Around $65,000 worth of tokens, including WBTC, SAND, and STG, were taken on Polygon. Much of this was exchanged for POL tokens on the OKX-DEX. The Arbitrum and Base networks were also targeted, with losses of $37,000 and $12,000, respectively.

The attackers utilized various techniques to move the stolen funds across multiple networks, including using decentralized exchanges and cross-chain bridges to cover their tracks. However, their activities have been traced, providing valuable insight into the attack’s operation and scale.

Read Also: Mask Network CEO Suji Yan Loses Over $4 Million in Crypto Theft

SlowMist and OKX have released detailed reports on the attack, including the technical aspects of how BOM operates. While the investigation is ongoing, these findings have shed light on cybercriminals’ tactics for exploiting unsuspecting cryptocurrency users.



Source link

Related articles

Rug the Privacy, Not the Money

Rug the Privacy, Not the Money

December 17, 2025
take the zk pill, you stay in the provable reality, and EF’s institutional privacy lead oskar thorén will show you how deep the rabbit hole goes…

take the zk pill, you stay in the provable reality, and EF’s institutional privacy lead oskar thorén will show you how deep the rabbit hole goes…

December 10, 2025
Tags: bitcoin newsCryptocrypto analysiscrypto newsEthoz EdgeLatest bitcoin newslatest crypto newsMalwareMillionReportSlowMistStealsUsers
Share76Tweet47

Related Posts

Rug the Privacy, Not the Money

Rug the Privacy, Not the Money

by IMPACTCRYPTO
December 17, 2025
0

When a Cypherpunk Says 'Permissioned' This is an EVMavericks production. All links are added as footnotes in a comment. (Ameen...

take the zk pill, you stay in the provable reality, and EF’s institutional privacy lead oskar thorén will show you how deep the rabbit hole goes…

take the zk pill, you stay in the provable reality, and EF’s institutional privacy lead oskar thorén will show you how deep the rabbit hole goes…

by IMPACTCRYPTO
December 10, 2025
0

oskar thorén is one of the leads in ethereum foundation's newest IPTF, or institutional privacy task force. he's a freedom...

BC.GAME’s “Stay Untamed” Breakpoint Eve party tops 1,200 sign-ups, with DubVision and Mari Ferrari headlining

BC.GAME’s “Stay Untamed” Breakpoint Eve party tops 1,200 sign-ups, with DubVision and Mari Ferrari headlining

by IMPACTCRYPTO
December 8, 2025
0

Belize City, Belize, December 8th, 2025, Chainwire As Bitcoin MENA 2025, Solana Breakpoint 2025 and the Global Blockchain Show bring...

Hotstuff Labs launches Hotstuff, a DeFi native Layer 1 connecting On-Chain Trading with Global Fiat Rails

Hotstuff Labs launches Hotstuff, a DeFi native Layer 1 connecting On-Chain Trading with Global Fiat Rails

by IMPACTCRYPTO
December 5, 2025
0

Singapore, Singapore, December 5th, 2025, Chainwire Hotstuff Labs today announced the public testnet for Hotstuff L1, a DeFi Layer 1...

Devconnect Argentina Recap | Ethereum Foundation Blog

Devconnect Argentina Recap | Ethereum Foundation Blog

by IMPACTCRYPTO
December 4, 2025
0

Devconnect Buenos Aires wrapped up as the largest Ethereum Foundation event yet, bringing together a global mix of developers, founders,...

Load More

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
Please enter CoinGecko Free Api Key to get this plugin works.
No Result
View All Result
  • Home
  • DeFi News
  • EVM News
    • Avalanche Network
    • Ethereum
    • Fantom Opera Chain
    • Harmony Chain
    • Huobi Eco Chain
    • Polkadot Chain
    • Polygon Chain
  • NFT News
  • Altcoin News
  • Crypto News
    • Crypto Regulation News
    • Bitcoin
    • Blockchain
    • Crypto Exchanges
    • Crypto Mining
    • Metaverse
    • Scam News
    • Web 3.0

© 2018 JNews by Jegtheme.