New Cerber ransomware variant steals Bitcoin wallets, passwords

Advertisement


Here’s a new reason to fear ransomware more than ever before: a new variant of Cerber has been modified to steal Bitcoin wallets and passwords before encrypting victims’ files and demanding ransom.

Two ways to profit off of one infection
The new and improved Cerber searches for wallet files of three Bitcoin wallet applications (Bitcoin Core, Electrum, and Multibit wallets), sends them to the attackers’ C&C, and finally deletes them from the victim’s machine.

It also tries to steal the saved passwords from Internet Explorer, Google Chrome, and Mozilla Firefox.

Advertisement