Monday, May 19, 2025
HomeMalwareMalicious Hackers Selling Malware's Targeting Bitcoin ATMs in the Dark Web Forums

Malicious Hackers Selling Malware’s Targeting Bitcoin ATMs in the Dark Web Forums

Published on

SIEM as a Service

Follow Us on Google News

As the popularity of cryptocurrencies increases attackers shifted the threat landscape cryptocurrencies, they try to exploit all the possible methods to mine and steal cryptocurrencies.

Security researchers from Trend Micro spotted Bitcoin ATM malware through underground forums that allow the user’s to steal bitcoins worth up to 6,750 in U.S. dollars. The malware sold by the dark web user or US$25,000.

Bitcoin ATM

Bitcoin ATM differs from the traditional ATM, it does not connect to a bank account, instead, it connects to the cryptocurrency exchange platform’s that used to buy and sell the cryptocurrencies.

- Advertisement - Google News

As of now there 3,500 bitcoin ATMs installed around the world, among that 74% in North America. Users can access these ATMs to access the wallets used to store digital currencies by scanning the wallet address or its QR code.

Source : coinatmradar

Bitcoin ATM malware

Researchers spotted an established user offering Bitcoin ATM malware for sale in the underground forums that include the ready-to-use card with EMV and NFC payments support.

The malware is designed to exploit a service vulnerability that allows the user’s to receive bitcoins worth up to 6,750 in U.S. dollars. the seller advertised as “operation does not require any physical access and can be maintained as a normal purchase. Includes the multilanguage manual and Jabber support”

With further analysis, it reveals that the seller offers ATM malware at a regular basis and details on how the malware works and how to exploit the vulnerability.

Also, the researchers spotted the seller offers a range of financial-related malware and compromised accounts and keep on expanding his waves.

Since the start of 2018, those with one eye on the crypto world have noted one thing: coin hacks are becoming more common. As Bitcoin’s value raced towards the $10,000 mark towards the end of 2017, the risk/reward ratio for cybercriminals was too great to ignore.

Since from the start of 2018, the coin hacks are becoming more common. The Bitcoin’s value reached $10,000 mark towards the end of 2017 increases the ratio for cybercriminals was too great to ignore.

Also Read:

Hackers using .NET Malware Called “Evrial” to steals Bitcoins by Abusing the clipboard

North Korean Hacking Group “Lazarus” Targeting Banks & Bitcoin Users Via Sophisticated Malware

New Clipboard Malware Monitors the Windows Clipboard for Cryptocurrency Addresses and Replace its Own Address

Gurubaran
Gurubaran
Gurubaran is a co-founder of Cyber Security News and GBHackers On Security. He has 10+ years of experience as a Security Consultant, Editor, and Analyst in cybersecurity, technology, and communications.

Latest articles

VMware ESXi, Firefox, Red Hat Linux & SharePoint Hacked – Pwn2Own Day 2

Security researchers demonstrated their prowess on the second day of Pwn2Own Berlin 2025, discovering...

Critical WordPress Plugin Flaw Puts Over 10,000 Sites of Cyberattack

A serious security flaw affecting the Eventin plugin, a popular event management solution for...

Sophisticated NPM Attack Leverages Google Calendar2 for Advanced Communication

A startling discovery in the npm ecosystem has revealed a highly sophisticated malware campaign...

New Ransomware Attack Targets Elon Musk Supporters Using PowerShell to Deploy Payloads

A newly identified ransomware campaign has emerged, seemingly targeting supporters of Elon Musk through...

Resilience at Scale

Why Application Security is Non-Negotiable

The resilience of your digital infrastructure directly impacts your ability to scale. And yet, application security remains a critical weak link for most organizations.

Application Security is no longer just a defensive play—it’s the cornerstone of cyber resilience and sustainable growth. In this webinar, Karthik Krishnamoorthy (CTO of Indusface) and Phani Deepak Akella (VP of Marketing – Indusface), will share how AI-powered application security can help organizations build resilience by

Discussion points


Protecting at internet scale using AI and behavioral-based DDoS & bot mitigation.
Autonomously discovering external assets and remediating vulnerabilities within 72 hours, enabling secure, confident scaling.
Ensuring 100% application availability through platforms architected for failure resilience.
Eliminating silos with real-time correlation between attack surface and active threats for rapid, accurate mitigation

More like this

Printer Company Distributes Malicious Drivers Infected with XRed Malware

Procolored, a printer manufacturing company, has been found distributing software drivers infected with malicious...

Frigidstealer Malware Targets macOS Users to Harvest Login Credentials

An macOS users, a new information-stealing malware dubbed FrigidStealer has emerged as a formidable...

SSH Auth Key Reuse Uncovers Advanced Targeted Phishing Campaign

A meticulously orchestrated phishing campaign targeting Kuwait's fisheries, telecommunications, and insurance sectors has been...