Key Takeaways:
- Microsoft warns of StilachiRAT, a new remote access trojan targeting crypto wallet extensions in Google Chrome, capable of stealing credentials and private keys.
- The malware affects at least 20 crypto wallets, including Coinbase Wallet, Trust Wallet, and MetaMask, using advanced evasion techniques to avoid detection.
- Crypto-related cybercrime is escalating, with $1.53 billion lost in February alone, highlighting the need for stronger security measures.
Microsoft has uncovered a new remote access trojan (RAT), StilachiRAT, designed to steal cryptocurrency from wallet extensions in Google Chrome.
First detected in November 2023, the malware can extract stored credentials, digital wallet data, and clipboard information, posing a significant threat to crypto users.
💀 New Malware Alert — Microsoft warns of StilachiRAT, a stealthy remote access trojan that:
— The Hacker News (@TheHackersNews) March 18, 2025
🔹 Steals browser passwords & clipboard data
🔹 Targets crypto wallets
🔹 Executes remote commands & monitors RDP sessions
🔹 Evades detection by clearing event logs
Read:… pic.twitter.com/IPYbUdlxcT
StilachiRAT scans infected devices for crypto wallet extensions, targeting at least 20 wallets, including Coinbase Wallet, Trust Wallet, MetaMask, and OKX Wallet.
It employs various attack methods, such as stealing saved credentials, capturing clipboard activity to obtain private keys, and using anti-forensic techniques to evade detection.
While Microsoft has not identified the malware’s creators, the company warns that its stealthy nature makes it a growing concern.
Although not widely distributed, Microsoft is sharing its findings to help mitigate potential risks.
Users are advised to use updated antivirus software, enable anti-phishing tools, and avoid suspicious downloads.
The discovery of StilachiRAT highlights rising cyber threats in the crypto space, with nearly $1.53 billion lost to scams and hacks in February alone.
Reports also indicate an increasing professionalization of crypto crime, emphasizing the need for stronger security practices.
As cyber threats evolve, vigilance and proactive protection remain essential for crypto users.