PaymentsJournal
No Result
View All Result
SIGN UP
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
PaymentsJournal
  • Commercial
  • Credit
  • Debit
  • Digital Assets & Crypto
  • Digital Banking
  • Emerging Payments
  • Fraud & Security
  • Merchant
  • Prepaid
No Result
View All Result
PaymentsJournal
No Result
View All Result

Microsoft Identifies Remote Access Trojan Built to Drain Crypto Wallets

By Wesley Grant
March 18, 2025
in Analysts Coverage, Digital Assets & Crypto, Fraud & Security
0
0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
crypto trojan

Hidden error in the operating system. 3D render.

Sophisticated malware is becoming an increasingly potent threat, as evidenced by the remote access trojan (RAT) that was recently discovered by Microsoft.

Dubbed StilachiRAT, the malware is designed to scan the Google Chrome browser for any of 20 crypto wallet extensions, including platforms like Coinbase Wallet, MetaMask, and Trust Wallet.

According to Microsoft, once the RAT detects a crypto wallet, it employs various techniques to siphon information from the system. These include extracting saved browser credentials and monitoring clipboard activity for passwords or crypto keys.

Once this sensitive data falls into the hands of bad actors, they can quickly drain the victim’s crypto wallet.

Bringing Awareness to the Capabilities

Microsoft first discovered evidence of StilachiRAT in November, and the tech firm said that it hasn’t yet been able to identify the cybercriminals behind the malware.

Though the RAT hasn’t yet gained widespread traction, Microsoft felt it was necessary to raise awareness about the malware due to its capabilities, the rapid evolution of the malware ecosystem, and to help reduce the number of potential victims.

One of the functions that makes StilachiRAT more impactful is its built-in evasion and anti-forensics mechanisms. For example, the malware can clear event logs and detect if it is operating in a sandbox environment to stave off detection.

To protect themselves from this threat, Microsoft suggests that crypto holders ensure they have up-to-date antivirus software, anti-phishing tools, and anti-malware defenses on their devices.

Threats Against Crypto Owners

Cryptocurrencies have gained significant attention over the past few years, but their decentralized nature—coupled with an often lacking regulatory framework—has made digital asset owners prime targets for cybercriminals.

These threats are supercharged by technology like Malware-as-a-Service (MaaS) platforms, which lower the technological bar for criminals and even allow them to outsource attacks. According to data from Darktrace, MaaS-based attacks picked up steam in the latter half of last year and now account for 57% of identified fraud activities.

One of the most commonly used malware tools identified in the Darktrace study was remote access trojan software, because of its efficiency and capability.

0
SHARES
0
VIEWS
Share on FacebookShare on TwitterShare on LinkedIn
Tags: Crypto WalletMalwareMalware-as-a-ServiceMicrosoftRATRemote Access Trojan

    Get the Latest News and Insights Delivered Daily

    Subscribe to the PaymentsJournal Newsletter for exclusive insight and data from Javelin Strategy & Research analysts and industry professionals.

    Must Reads

    stablecoins, Klarna

    How Stablecoins Emerged as a Key Element of Cross-Border Payments

    April 6, 2026
    Cross-Border Payments

    How the U.S. Built Its Faster Payments Ecosystem

    April 3, 2026
    Young Latin woman applying powder on her face for beauty blog. Smiling woman sitting at table in cosy room holding powder box and brush looking at phone camera recording video. Make up and cosmetics blogging concept

    TikTok Aspires to Fintech Status with Payments, Credit Bids in Brazil

    April 2, 2026
    small business credit card

    What Banks Get Wrong About Small Business Credit Cards

    April 1, 2026
    embedded payments

    Embedding Payments for Growth: How ISVs Can Scale Through Vertical Focus and Partnerships

    March 31, 2026
    ACH fraud monitoring

    From a Checkbox to a Differentiator: Redefining ACH Fraud Monitoring

    March 30, 2026
    Digitization and Multi-Brand Cards: Prepaid Trends. Bancorp Bank prepaid card fees, Bitpay Prepaid Card, mobile prepaid debit cards, prepaid cards for councils

    Turning a Prepaid Card into a Long-Term Relationship

    March 27, 2026
    payments fraud, faster payments fraud, financial fraud

    The Emotional Toll of Financial Fraud

    March 26, 2026

    Linkedin-in X-twitter
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Commercial
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Digital Banking
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter
    • About Us
    • Advertise With Us
    • Sign Up for Our Newsletter

    ©2026 PaymentsJournal.com |  Terms of Use | Privacy Policy

    • Commercial Payments
    • Credit
    • Debit
    • Digital Assets & Crypto
    • Emerging Payments
    • Fraud & Security
    • Merchant
    • Prepaid
    No Result
    View All Result