Bitget App
Trade smarter
Open
HomepageSign up
Bitget>
News>
Russian gang targets crypto holders with cross-platform spear-phishing malware

Russian gang targets crypto holders with cross-platform spear-phishing malware

Crypto.News2025/02/02 16:00
By: By David HundeyinEdited by Dorian Batycka
DEFI0.00%

A Russian cybercrime gang called “Crazy Evil” is behind a new rash of social media phishing scams targeting crypto users.

The gang has been identified in a new cybersecurity threats report as the brains behind more than 10 sophisticated social media phishing scams that lure victims into downloading malware that steals their crypto. The scams reportedly make use of highly bespoke social engineering tactics to convince users to drop their guard and install malware such as Angel Drainer, Atomic mac OS Stealer, and StealC.

Russian gang targets crypto holders with cross-platform spear-phishing malware image 0 Crazy Evil cyber threat analysis | Source: Insikt Group

Providing an insight into the inner working of Crazy Evil, threat research outfit Insikt Group, which made the discovery, said in an announcement :

Crazy Evil’s operation is both vast and meticulous. Its six subteams — AVLAND, TYPED, DELAND, ZOOMLAND, DEFI, and KEVLAND — run bespoke scams targeting specific victim profiles. From phishing lures aimed at cryptocurrency influencers to malware payloads designed for cross-platform infection, the group’s tactics reflect an advanced understanding of cybersecurity loopholes.

According to Insikt, Crazy Evil’s capabilities extend across both Windows and mac OS, giving it a cross-platform advantage in compromising users, which marks out this gang as uniquely dangerous. Insikt also revealed that in addition to its sophisticated social engineering capability and cross-platform abilities, what marks out Crazy Evil is its explicit targeting of crypto holders with malware specifically designed to steal wallet keys and extract other information that may be used to compromise wallet security.

To mitigate for the sophistication of Crazy Evil malware attacks, users are encouraged to deploy endpoint detection and response solutions that actively scan for the presence of specific malware families linked to the gang, as well as web monitoring and filtering to block access to malicious domains controlled by Crazy Evil.

On Dec. 28, on-chain investigator Taylor Manahan flagged the existence of similar bad actors that used social engineering tactics such as fake Web3 job interviews to install malware on the devices of victims with a view to ultimately stealing their crypto wallet keys.

Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
PoolX: Earn new token airdrops
Lock your assets and earn 10%+ APR
Lock now!

You may also like

New spot margin trading pair — BARD/USDT!
Bitget Announcement2025/09/19 07:28
BTC/ETH VIP Earn Ultimate Carnival is officially here!
Bitget Announcement2025/09/18 07:12
New spot margin trading pair — FLOCK/USDT!
Bitget Announcement2025/09/18 06:55
0GUSDT now launched for pre-market futures trading
Bitget Announcement2025/09/18 05:39

Trending news

More
1
New spot margin trading pair — BARD/USDT!
2
BTC/ETH VIP Earn Ultimate Carnival is officially here!

Crypto prices

More
Bitcoin
Bitcoin
BTC
$115,719.79
+0.20%
Ethereum
Ethereum
ETH
$4,479.26
+0.28%
XRP
XRP
XRP
$3
+0.17%
Tether USDt
Tether USDt
USDT
$1
-0.01%
BNB
BNB
BNB
$1,070.21
+7.79%
Solana
Solana
SOL
$241.61
+1.40%
USDC
USDC
USDC
$0.9997
-0.01%
Dogecoin
Dogecoin
DOGE
$0.2692
+1.49%
TRON
TRON
TRX
$0.3455
+0.19%
Cardano
Cardano
ADA
$0.8983
+0.41%
How to sell PI
Bitget lists PI – Buy or sell PI quickly on Bitget!
Trade now
Become a trader now?A welcome pack worth 6200 USDT for new users!
Sign up now
Trade smarter