Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

Seoul Court Rescues Bithumb from Record 6-Month Suspension

May 2, 2026

Bitdeer Sells All Mined BTC This Week: Zero-Holding Strategy Intensifies

May 2, 2026

How North Korean spies spent months in-person to drain $285 million from Drift

May 2, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»Dozens of Russian Groups Steal 50 Million User Passwords
Dozens of Russian Groups Steal 50 Million User Passwords
Security

Dozens of Russian Groups Steal 50 Million User Passwords

October 16, 2023No Comments3 Mins Read

Security researchers have warned of a password-theft epidemic after revealing that Russian groups are using off-the-shelf info-stealing malware to devastating effect.

Group-IB said its analysis revealed 34 Telegram groups used by threat actors to organize their efforts, and that they’d infected over 890,000 user devices and stolen over 50 million passwords in the first seven months of 2022 alone.

The security vendor said each of these groups has as many as 200 active members. Many are well organized, and are used to participate in automated scam-as-a-service campaigns targeting marketplaces known as “Classiscam.”

In these campaigns, administrators give work to lower rank “workers” in exchange for a cut of the profits. These workers in turn drive traffic to scam websites masquerading as well-known companies and try to trick victims into downloading malicious files.

They do so by embedding links for downloading info-stealers into video reviews of popular games on YouTube, through mining software or NFT files on specialized forums, as well as lucky draws and lotteries on social media, Group-IB said.

As the name suggests, info-stealing malware collects data stored in browsers and sends it to the malware operator. This could include credentials to gaming accounts, email services and social media, as well as bank card details and crypto-wallet information.

The threat actors observed by Group-IB often used two or three distinct malware variants at the same time. The most popular were RedLine, used by 23 out of 34 gangs, and Racoon, used by eight. These can apparently be rented from the dark web for as little as $150-200 per month.

See also  Circle Mints $500 Million in USDC on Solana as Weekly Issuance Tops $3.25 Billion

So far in 2022, PayPal (16%) and Amazon (13%) passwords account for the biggest share of malicious activity, although attacks targeting gaming services like Steam, EpicGames and Roblox have increased almost five-fold, Group-IB said.

The number of stolen passwords increased by 80% from the periods March–December 2021 to January–July 2022. However, the groups also go after cookie files (up 74%), crypto wallets (216%) and payment cards (81%).

The value of stolen data to date is nearly $6m, Group-IB estimated.

“The influx of a huge number of workers into the popular scam Classiscam led to criminals competing for resources and looking for new ways to make profits,” read a statement from Group-IB’s Digital Risk Protection team.

“The popularity of schemes involving stealers can be explained by the low entry barrier. Beginners do not need to have advanced technical knowledge as the process is fully automated and the worker’s only task is to create a file with a stealer in the Telegram bot and drive traffic to it. For victims whose computers become infected with a stealer, however, the consequences can be disastrous.”

Source link

Dozens groups Million Passwords Russian Steal user

Related Posts

How North Korean spies spent months in-person to drain $285 million from Drift

May 2, 2026

Meteora reports $1.5 million OTC scam loss in Q1 MET report

May 2, 2026

Crypto hack losses top $630M in April, highest since February 2025

May 2, 2026

US seized $500M in Iranian crypto assets, Treasury secretary says

May 2, 2026
Top Posts

Murder Crisis Plagues DC As Mayor Begs For More Officers After ‘Defunding Police’

September 29, 2023

Ripple introduces Ethereum and Solana staking

February 10, 2026

The European Union Hates Hungary, Loves Ukraine

March 28, 2026

Type above and press Enter to search. Press Esc to cancel.