⚡️⚠️ NEW - Astaroth, a banking Trojan, uses…
⚡️⚠️ NEW - Astaroth, a banking Trojan, uses GitHub to steal crypto credentials.
A Trojan malware, nicknamed Astaroth, spreads via phishing emails and mainly targets South America, with a particular focus on Brazil.
Victims receive an email prompting them to download a Windows file (.lnk).
Opening this file silently installs Astaroth on the computer.
The malware operates in the background, recording keystrokes (keylogger) and thus retrieving banking credentials and crypto credentials.
To remain operational even when its servers are down, Astaroth uses GitHub as a redirection mechanism.