• Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
Thursday, September 11, 2025
  • Login
  • Register
Coin24h.com
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining
No Result
View All Result
Coin24h.com
No Result
View All Result
Ledger Nano X - The secure hardware wallet
ADVERTISEMENT

Typhon Reborn Stealer Malware Resurfaces with Advanced Evasion Techniques

5 April 2023
in Mining
Reading Time: 5 mins read
A A
0
Typhon Reborn Stealer Malware Resurfaces with Advanced Evasion Techniques
189
SHARES
1.5k
VIEWS
Share on FacebookShare on Twitter
cryptotrader
ADVERTISEMENT

Related articles

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024

Apr 05, 2023Ravie LakshmananCyber Threat / Dark Web

The threat actor behind the information-stealing malware known as Typhon Reborn has resurfaced with an updated version (V2) that packs in improved capabilities to evade detection and resist analysis.

The new version is offered for sale on the criminal underground for $59 per month, $360 per year, or alternatively, for $540 for a lifetime subscription.

“The stealer can harvest and exfiltrate sensitive information and uses the Telegram API to send stolen data to attackers,” Cisco Talos researcher Edmund Brumaghin said in a Tuesday report.

Typhon was first documented by Cyble in August 2022, detailing its myriad features, including hijacking clipboard content, capturing screenshots, logging keystrokes, and stealing data from crypto wallet, messaging, FTP, VPN, browser, and gaming apps.

Based on another stealer malware called Prynt Stealer, Typhon is also capable of delivering the XMRig cryptocurrency miner. In November 2022, Palo Alto Networks Unit 42 unearthed an updated version dubbed Typhon Reborn.

“This new version has increased anti-analysis techniques and it was modified to improve the stealer and file grabber features,” Unit 42 said, pointing out the removal of existing features like keylogging and cryptocurrency mining in an apparent attempt to lower the chances of detection.

The latest V2 variant, per Cisco Talos, was marketed by its developer on January 31, 2023, on the Russian language dark web forum XSS.

“Typhon Reborn stealer is a heavily refactored and improved version of the older and unstable Typhon Stealer,” the malware author said, in addition to touting its inexpensive price and the absence of any backdoors.

Like other malware, V2 comes with options to avoid infecting systems that are located in the Commonwealth of Independent States (CIS) countries. It, however, notably excludes Ukraine and Georgia from the list.

Typhon Reborn Stealer Malware

Besides incorporating more anti-analysis and anti-virtualization checks, Typhon Reborn V2 removes its persistence features, instead opting to terminate itself after exfiltrating the data.

The malware ultimately transmits the collected data in a compressed archive via HTTPS using the Telegram API, marking continued abuse of the messaging platform.

“Once the data has been successfully transmitted to the attacker, the archive is then deleted from the infected system,” Brumaghin said. “The malware then calls [a self-delete function] to terminate execution.”

UPCOMING WEBINAR

Learn to Secure the Identity Perimeter – Proven Strategies

Improve your business security with our upcoming expert-led cybersecurity webinar: Explore Identity Perimeter strategies!

Don’t Miss Out – Save Your Seat!

The findings come as Cyble disclosed a new Python-based stealer malware named Creal that targets cryptocurrency users via phishing sites mimicking legitimate crypto mining services like Kryptex.

The malware is no different from Typhon Reborn in that it’s equipped to siphon cookies and passwords from Chromium-based web browsers as well as data from instant messaging, gaming, and crypto wallet apps.

That said, the malware’s source code is available on GitHub, thereby allowing other threat actors to alter the malware to suit their needs and making it a potent threat.

“Creal Stealer is capable of exfiltrating data using Discord webhooks and multiple file-hosting and sharing platforms such as Anonfiles and Gofile,” Cyble said in a report published last week.

“The trend of using open source code in malware is increasing among cybercriminals, since it allows them to create sophisticated and customized attacks with minimal expenses.”

Found this article interesting? Follow us on Twitter  and LinkedIn to read more exclusive content we post.



Source link

Cryptohopper
ADVERTISEMENT
[crypto-donation-box]
Tags: AdvancedEvasionMalwareRebornResurfacesstealerTechniquesTyphon
Share76Tweet47
Ledger Nano X - The secure hardware wallet
Previous Post

ApeCoin’s Road into Metaverse Blocked by DAO Vote, Big Eyes Coin Raises $32.92 Million

Next Post

Who’s Paying For Elon Musk’s Twitter Blue? Apple Shortcut Checks – Apple (NASDAQ:AAPL)

Related Posts

No, Russia did not just lift its ban on domestic crypto use

No, Russia did not just lift its ban on domestic crypto use

30 July 2024
0

A fake news story circulated today about Russia’s supposed embrace of bitcoin mining and crypto payments. According to excited social...

New US Bitcoin Mining Hardware Creates B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

New US Bitcoin Mining Hardware Creates $20B Opportunity, Could Disrupt China’s Mining Dominance: Bernstein – Canaan (NASDAQ:CAN)

30 July 2024
0

A new report estimates a $20 billion revenue opportunity in Bitcoin BTC/USD mining chips and hardware over the next five...

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

Russia Races to Legalize Crypto as Sanctions Weigh On Firms – BNN Bloomberg

30 July 2024
0

(Bloomberg) -- Russia is moving to regulate the use of cryptocurrencies, as companies wrestle with increasing difficulties in foreign payments...

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

Russia Advances Crypto and Mining Regulations as US Sanctions Impact Economy

30 July 2024
0

The Russian central bank plans to initiate international payments in cryptocurrencies by the end of the year to overcome delays...

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

Wall Street Bitcoin Miner Taps Institutional Investor for £6.5 Million Capital Boost

30 July 2024
0

Listed both on Wall Street and the London Stock Exchange (LSE) Bitcoin miner Argo Blockchain, has announced a £6.5 million...

Load More
Next Post
Who’s Paying For Elon Musk’s Twitter Blue? Apple Shortcut Checks – Apple (NASDAQ:AAPL)

Who's Paying For Elon Musk's Twitter Blue? Apple Shortcut Checks - Apple (NASDAQ:AAPL)

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Plugin Install : Widget Tab Post needs JNews - View Counter to be installed
  • Trending
  • Comments
  • Latest
CryptoQuant Predicts BNB To Hit ,000

CryptoQuant Predicts BNB To Hit $1,000

11 September 2025
Morning Minute: Solana's New Path to ATH – Yahoo Finance

Morning Minute: Solana's New Path to ATH – Yahoo Finance

11 September 2025
BNB Price Prediction: Why New Crypto Money Is Pouring Into BlockchainFX, the Top Presale Past M – CoinCentral

BNB Price Prediction: Why New Crypto Money Is Pouring Into BlockchainFX, the Top Presale Past $7M – CoinCentral

11 September 2025
Why Did Linea (LINEA) Price Drop 30% Post-Launch?

Why Did Linea (LINEA) Price Drop 30% Post-Launch?

11 September 2025

About Us

We publish a comprehensive news feed covering all news relevant to the crypto user, covering main industry news, politics and regulation as well as consumer-level “news you can use” (practical stuff), including handy DIY tips, links to useful tools, unbiased reviews and opinions revolving around cryptocurrency. Simple logic and real-world examples are preferred before technical jargon and personal rants.

Categories

  • Altcoin
  • ApeCoin
  • Bitcoin
  • Blockchain
  • BNB
  • Cardano
  • Cryptocurrency
  • DOGE
  • DOT
  • Ethereum
  • HBAR
  • Litecoin
  • Market
  • Meta News
  • Mining
  • NFT
  • QNT
  • Regulation
  • SHIBA
  • Solano
  • Tether
  • Uncategorized
  • XDC
  • XLM
  • XRP

What’s New Here!

  • CryptoQuant Predicts BNB To Hit $1,000
  • Morning Minute: Solana's New Path to ATH – Yahoo Finance
  • BNB Price Prediction: Why New Crypto Money Is Pouring Into BlockchainFX, the Top Presale Past $7M – CoinCentral
  • Why Did Linea (LINEA) Price Drop 30% Post-Launch?
  • Pump.fun Price Jumps 42% in a Week, Bulls Eye $0.0069 Resistance

Subscribe Now

Our Partner

Round Main Logo
  • About Us
  • Privacy Policy
  • Contact Us

© 2022-2025 coin24h.com

No Result
View All Result
  • Home
  • Cryptocurrency
    • Bitcoin
    • Ethereum
    • XRP
    • Litecoin
    • Altcoin
    • Cardano
    • Tether
    • DOGE
    • Solano
    • XLM
    • DOT
    • XDC
    • SHIBA
    • BNB
    • Ape
    • HBAR
    • QNT
  • Blockchain
  • Regulation
  • Market
  • Live
    • Prices
    • ICO
  • Meta
    • NFT
  • Technical Analysis
    • XRP
    • BTC
    • XLM
    • ADA
    • TETHER
    • ETC
    • ETH
    • DOGE
    • LTC
  • Exchange
  • Mining

© 2020 coin24h.com

Welcome Back!

Login to your account below

Forgotten Password? Sign Up

Create New Account!

Fill the forms below to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In
  • bitcoinBitcoin (BTC) $ 113,987.00
  • ethereumEthereum (ETH) $ 4,432.39
  • xrpXRP (XRP) $ 3.01
  • tetherTether (USDT) $ 1.00
  • bnbBNB (BNB) $ 899.71
  • solanaSolana (SOL) $ 225.02
  • usd-coinUSDC (USDC) $ 0.999823
  • staked-etherLido Staked Ether (STETH) $ 4,427.92
  • dogecoinDogecoin (DOGE) $ 0.250981
  • tronTRON (TRX) $ 0.346898
  • cardanoCardano (ADA) $ 0.883940
  • wrapped-stethWrapped stETH (WSTETH) $ 5,372.47
  • chainlinkChainlink (LINK) $ 23.81
  • wrapped-beacon-ethWrapped Beacon ETH (WBETH) $ 4,782.72
  • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 114,065.00
  • hyperliquidHyperliquid (HYPE) $ 53.37
  • ethena-usdeEthena USDe (USDE) $ 1.00
  • suiSui (SUI) $ 3.62
  • stellarStellar (XLM) $ 0.390487
  • figure-helocFigure Heloc (FIGR_HELOC) $ 0.992743
  • avalanche-2Avalanche (AVAX) $ 28.98
  • wrapped-eethWrapped eETH (WEETH) $ 4,766.07
  • bitcoin-cashBitcoin Cash (BCH) $ 599.53
  • wethWETH (WETH) $ 4,436.55
  • hedera-hashgraphHedera (HBAR) $ 0.237139
  • litecoinLitecoin (LTC) $ 117.03
  • leo-tokenLEO Token (LEO) $ 9.57
  • crypto-com-chainCronos (CRO) $ 0.259903
  • the-open-networkToncoin (TON) $ 3.19
  • usdsUSDS (USDS) $ 0.999784
  • shiba-inuShiba Inu (SHIB) $ 0.000013
  • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 0.999552
  • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 114,075.00
  • polkadotPolkadot (DOT) $ 4.20
  • whitebitWhiteBIT Coin (WBT) $ 43.39
  • uniswapUniswap (UNI) $ 9.85
  • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.20
  • world-liberty-financialWorld Liberty Financial (WLFI) $ 0.201371
  • ethenaEthena (ENA) $ 0.771810
  • moneroMonero (XMR) $ 272.39
  • mantleMantle (MNT) $ 1.54
  • aaveAave (AAVE) $ 304.84
  • bitget-tokenBitget Token (BGB) $ 4.93
  • pepePepe (PEPE) $ 0.000011
  • daiDai (DAI) $ 0.999850
  • okbOKB (OKB) $ 194.40
  • worldcoin-wldWorldcoin (WLD) $ 1.71
  • bittensorBittensor (TAO) $ 356.38
  • nearNEAR Protocol (NEAR) $ 2.71
  • jito-staked-solJito Staked SOL (JITOSOL) $ 276.52