Close Menu
  • Homepage
  • News
  • Cloud & AI
  • ECommerce
  • Entertainment
  • Finance
  • Opinion
  • Podcast
  • Contact

Subscribe to Updates

Get the latest technology news from TechFinancials News about FinTech, Tech, Business, Telecoms and Connected Life.

What's Hot

Mettus Launches Splendi App To Help Young South Africans Manage Their Credit Health

2026-01-22

The Fintech Resilience Gap: Why Africa’s Next Decade Depends On Structural Integrity

2026-01-22

Resolv Secures $500,000 Pre-Seed To Build The Recovery Layer For Stolen Crypto

2026-01-21
Facebook X (Twitter) Instagram
Trending
  • Mettus Launches Splendi App To Help Young South Africans Manage Their Credit Health
Facebook X (Twitter) Instagram YouTube LinkedIn WhatsApp RSS
TechFinancials
  • Homepage
  • News
  • Cloud & AI
  • ECommerce
  • Entertainment
  • Finance
  • Opinion
  • Podcast
  • Contact
TechFinancials
Home»Business»Kaspersky Uncovers Online Fraud Targeting Crypto And Sensitive Data via Web3, AI, And Gaming Trends
Business

Kaspersky Uncovers Online Fraud Targeting Crypto And Sensitive Data via Web3, AI, And Gaming Trends

Gugu LourieBy Gugu Lourie2024-08-21Updated:2024-08-26No Comments3 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Email
Hackers
Masked Hacker. Gorodenkoff / Shutterstock.com
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

Kaspersky has uncovered an online fraud campaign targeting Windows and macOS users worldwide, aiming to steal cryptocurrency and sensitive information.

Orchestrated by Russian-speaking cybercriminals, the attackers exploit popular topics like web3, crypto, AI, and online gaming to lure victims with fake websites. These sites, which closely mimic legitimate services such as crypto platforms, online role-playing games, and AI translators, are polished and sophisticated.

Despite minor differences in elements like names and URLs, the convincing design of these malicious sites increases the likelihood of successful attacks. The campaign spreads info-stealing and clipper malware, posing a significant threat to individuals globally.

Fake websites created as a part of Tusk campaign, mimicking legitimate crypto and AI services, and an online game
Fake websites created as a part of Tusk campaign, mimicking legitimate crypto and AI services, and an online game

Victims are enticed to interact with these fake sites through phishing tactics. The websites are crafted to deceive individuals into revealing sensitive information, such as crypto-wallet private keys, or to download malware. Once the victims engage, the attackers can either access and drain their cryptocurrency wallets via the fake site or use the info-stealing malware to capture various credentials, wallet details, and other personal information.

“The correlation between different parts of this campaign and their shared infrastructure suggests a well-organised operation, possibly linked to a single actor or group with specific financial motives,” says Ayman Shaaban, Head of Incident Response Unit, Global Emergency Response Team, Kaspersky.

“In addition to the three sub-campaigns targeting crypto, AI, and gaming topics, our Threat Intelligence Portal has helped to identify infrastructure for 16 other topics — either older, retired sub-campaigns or new ones not yet launched. This demonstrates the threat actor’s ability to swiftly adapt to trending topics and deploy new malicious operations in response. It underscores the critical need for robust security solutions and enhanced cyber literacy to protect against evolving threats.”

Kaspersky discovered strings in the malicious code sent to the attackers’ servers, written in Russian. The term “Mammoth,” used by Russian-speaking cybercriminals to refer to a “victim,” appeared in both server communications and malware download files. Kaspersky named the campaign “Tusk” to highlight its focus on financial gain, drawing a parallel to the way mammoths were hunted for their valuable tusks.

The campaign spreads info-stealing malware like Danabot and Stealc, as well as clippers, including an open-source variant written in Go. The specific malware varies depending on the campaign’s theme. Infostealers are designed to capture sensitive information such as credentials, while clippers monitor clipboard data, replacing a copied cryptocurrency wallet address with a malicious one.

Malware loader files are hosted on Dropbox. When victims download them, they encounter user-friendly interfaces that disguise the malware, prompting them to log in, register, or stay on a static page. Meanwhile, the remaining malicious files and payloads are automatically downloaded and installed onto their systems.

AI crypto Gaming Kaspersky Online Fraud Web3
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Gugu Lourie
  • Website

Related Posts

The Fintech Resilience Gap: Why Africa’s Next Decade Depends On Structural Integrity

2026-01-22

Resolv Secures $500,000 Pre-Seed To Build The Recovery Layer For Stolen Crypto

2026-01-21

Bitcoin Hyper Falls Short Where Remittix Delivers, How Is RTX Reshaping The PayFi Narrative As Platform Goes Live Feb 9th

2026-01-21

Solana Price Prediction: SOL Is On-Track To Regain $250 This Year but the Question Is When? Is Meme-Mania Truly Over?

2026-01-21

Whales Leaving the Polkadot Network at $2.21 to Join Crypto Presales Like Digitap ($TAP) in 2026

2026-01-21

Digitap ($TAP) Targets $6: Best Altcoin To Buy for Global Offshore Freedom

2026-01-21

Crown Point Capital Issues Update Highlighting Ongoing Expansion in Multi-Asset Trading Activity

2026-01-21

MBB Finance Releases Update Focused on Strengthening Secure Trading Across Equity and Digital Asset Markets

2026-01-21

Crypto Dispensers, Operating Under Virtual Assets, Inc., Sets the Next Standard for Regulated Cash-to-Bitcoin Infrastructure

2026-01-21
Leave A Reply Cancel Reply

DON'T MISS
Breaking News

Huawei Says The Next Wave Of Infrastructure Investment Must Include People, Not Only Platforms

As countries push ahead with digital transformation, infrastructure planning is evolving. It is no longer…

Cartesian Capital Expands Investor Toolkits With JSE Listings

2026-01-20

South Africa: Best Starting Point In Years, With 3 Clear Priorities Ahead

2026-01-12

How SA’s Largest Wholesale Network is Paving the Way for a Connected, Agile Future

2025-12-02
Stay In Touch
  • Facebook
  • Twitter
  • YouTube
  • LinkedIn
OUR PICKS

Mettus Launches Splendi App To Help Young South Africans Manage Their Credit Health

2026-01-22

The EX60: A Volvo That Talks Back

2026-01-20

Over R270M In Phuthuma Nathi Dividends Remain Unclaimed

2025-11-27

Africa’s Next Voice Revolution, When 5G Meets AI

2025-11-21

Subscribe to Updates

Get the latest tech news from TechFinancials about telecoms, fintech and connected life.

About Us

TechFinancials delivers in-depth analysis of tech, digital revolution, fintech, e-commerce, digital banking and breaking tech news.

Facebook X (Twitter) Instagram YouTube LinkedIn WhatsApp Reddit RSS
Our Picks

Mettus Launches Splendi App To Help Young South Africans Manage Their Credit Health

2026-01-22

The Fintech Resilience Gap: Why Africa’s Next Decade Depends On Structural Integrity

2026-01-22

Resolv Secures $500,000 Pre-Seed To Build The Recovery Layer For Stolen Crypto

2026-01-21
Recent Posts
  • Mettus Launches Splendi App To Help Young South Africans Manage Their Credit Health
  • The Fintech Resilience Gap: Why Africa’s Next Decade Depends On Structural Integrity
  • Resolv Secures $500,000 Pre-Seed To Build The Recovery Layer For Stolen Crypto
  • Huawei Says The Next Wave Of Infrastructure Investment Must Include People, Not Only Platforms
  • The Productivity Myth That’s Costing South Africa Talent
TechFinancials
RSS Facebook X (Twitter) LinkedIn YouTube WhatsApp
  • Homepage
  • Newsletter
  • Contact
  • Advertise
  • Privacy Policy
  • About
© 2026 TechFinancials. Designed by TFS Media. TechFinancials brings you trusted, around-the-clock news on African tech, crypto, and finance. Our goal is to keep you informed in this fast-moving digital world. Now, the serious part (please read this): Trading is Risky: Buying and selling things like cryptocurrencies and CFDs is very risky. Because of leverage, you can lose your money much faster than you might expect. We Are Not Advisors: We are a news website. We do not provide investment, legal, or financial advice. Our content is for information and education only. Do Your Own Research: Never rely on a single source. Always conduct your own research before making any financial decision. A link to another company is not our stamp of approval. You Are Responsible: Your investments are your own. You could lose some or all of your money. Past performance does not predict future results. In short: We report the news. You make the decisions, and you take the risks. Please be careful.

Type above and press Enter to search. Press Esc to cancel.

Ad Blocker Enabled!
Ad Blocker Enabled!
Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.