Laughing Hyena
  • Home
  • Hyena Games
  • Esports
  • NFT Gaming
  • Crypto Trends
  • Game Reviews
  • Game Updates
  • GameFi Guides
  • Shop
Tag:

hijacks

Sui LP provider Cetus allegedly drained of $11m SUI, hack or bug?
GameFi Guides

Hacker group Rare Werewolf hijacks Russian devices to mine crypto and steal data

by admin June 11, 2025



A cybercriminal group known as Rare Werewolf is running a targeted phishing campaign against Russian and CIS-based companies, hijacking devices to mine crypto and steal sensitive data.

Kaspersky’s research revealed that the APT group Rare Werewolf, also known as “Librarian Ghouls” and “Rezet,” has remained consistently active through May, carrying out a relentless campaign that targets organizations across Russia and the CIS.

The group uses phishing emails disguised as communications from legitimate organizations to deceive victims into opening malicious attachments. Once these files are executed, the attackers gain remote access to the device, exfiltrate sensitive data (such as credentials and crypto wallet info), and then deploy Monero (XMR) crypto miners to exploit the system’s processing power.” To avoid detection, they schedule the compromised machine to automatically wake up at 1 AM and shut down at 5 AM, ensuring their activities go unnoticed.

Kaspersky reports that the group mainly targets industrial enterprises, with engineering schools also being of particular interest. The phishing emails are written in Russian and typically contain attachments with Russian-language filenames and decoy documents, which suggests that the group’s primary victims are based in Russia or are Russian speakers.

Source: PDF document imitating a payment order | securelist.com

Kaspersky’s investigation also uncovered several domains that might be linked to the Librarian Ghouls campaign, although they have low confidence in this connection. Among the domains still active at the time were users-mail[.]ru and deauthorization[.]online, both of which hosted phishing pages. These pages, created with PHP scripts, were designed to steal login credentials for the popular Russian e-mail service Mail.ru.

Source: Example of a phishing page associated with the APT campaign | securelist.com

As of the release of Kaspersky’s research, the Librarian Ghouls APT campaign remains active, with ongoing attacks observed as recently as last month.



Source link

June 11, 2025 0 comments
0 FacebookTwitterPinterestEmail

Categories

  • Crypto Trends (703)
  • Esports (532)
  • Game Reviews (506)
  • Game Updates (628)
  • GameFi Guides (703)
  • Gaming Gear (682)
  • NFT Gaming (682)
  • Product Reviews (682)
  • Uncategorized (1)

Recent Posts

  • How To Avoid Common Set-Up Headaches
  • Public Keys: Circle and Coinbase Get GENIUS Bump, Bitcoin Treasuries on Shaky Ground?
  • Finding Recently Saved Photos on My iPhone Is Much Easier With This One Change
  • Where are the Switch 2 indie games?
  • Solana, XRP and Dogecoin ETF Approvals in 2025 Are a Near Lock, Analysts Say

Recent Posts

  • How To Avoid Common Set-Up Headaches

    June 20, 2025
  • Public Keys: Circle and Coinbase Get GENIUS Bump, Bitcoin Treasuries on Shaky Ground?

    June 20, 2025
  • Finding Recently Saved Photos on My iPhone Is Much Easier With This One Change

    June 20, 2025
  • Where are the Switch 2 indie games?

    June 20, 2025
  • Solana, XRP and Dogecoin ETF Approvals in 2025 Are a Near Lock, Analysts Say

    June 20, 2025

Newsletter

Subscribe my Newsletter for new blog posts, tips & new photos. Let's stay updated!

About me

Welcome to Laughinghyena.io, your ultimate destination for the latest in blockchain gaming and gaming products. We’re passionate about the future of gaming, where decentralized technology empowers players to own, trade, and thrive in virtual worlds.

Recent Posts

  • How To Avoid Common Set-Up Headaches

    June 20, 2025
  • Public Keys: Circle and Coinbase Get GENIUS Bump, Bitcoin Treasuries on Shaky Ground?

    June 20, 2025

Newsletter

Subscribe my Newsletter for new blog posts, tips & new photos. Let's stay updated!

@2025 laughinghyena- All Right Reserved. Designed and Developed by Pro


Back To Top
Laughing Hyena
  • Home
  • Hyena Games
  • Esports
  • NFT Gaming
  • Crypto Trends
  • Game Reviews
  • Game Updates
  • GameFi Guides
  • Shop

Shopping Cart

Close

No products in the cart.

Close