Government Agencies Warn Users About New Malware Targeting Crypto Wallets and Exchanges

An advisory report issued by government agencies in the United States and the United Kingdom raises concerns about a new malware that is being used to target crypto wallets and exchanges. The report highlights the collaboration between the U.S. National Security Agency (NSA), Cybersecurity and Infrastructure Security Agency (CISA), Federal Bureau of Investigation (FBI), and the U.K.’s National Cyber Security Centre (NCSC) in releasing a joint report on the malware known as “Infamous Chisel.”

Sandworm’s Involvement and Ukrainian Military Targeting

The report establishes a connection between the malware and Sandworm, a cyberwarfare unit operating under the GRU, Russia’s military intelligence agency. It reveals that Sandworm has been specifically targeting the Android devices of the Ukrainian military and utilizing this malware to extract information from compromised mobile devices. This indicates a potential threat to the security and integrity of these devices.

Directories where information was extracted by the malware. Source: National Cyber Security Centre

The malware has successfully extracted data from various directories, including those of popular exchange applications such as Binance, Coinbase, and Trust Wallet. As per the report, all files within the listed directories are being exfiltrated, irrespective of their type or content. This poses a significant risk to the privacy and security of users’ sensitive information.

The Lack of Concealment and Android Device Vulnerability

According to the joint report, the components of Infamous Chisel were developed with little concern for concealing malicious activity. The malware lacks effective stealth techniques to disguise its operations. However, the report suggests that the absence of host-based detection systems for Android devices might attribute to this deficiency. This highlights the vulnerability of Android devices to such attacks and emphasizes the need for improved security measures and detection systems.

Increasing Losses to Exploits, Hacks, and Scams

Meanwhile, the report also sheds light on the alarming increase in losses caused by exploits, hacks, and scams in the crypto industry. In 2023 alone, nearly $1 billion has been lost to such malicious activities. Blockchain security firm CertiK reported that as of September 1, the cumulative losses reached around $997 million. In August, losses amounted to approximately $45 million. Although these figures are lower than the previous month, where more than $486 million of digital assets were lost, the threat remains significant.


The joint advisory report by the U.S. and U.K. government agencies serves as a critical warning for users of crypto wallets and exchanges. The emergence of Infamous Chisel malware, linked to Sandworm’s activities, poses a serious threat to the security of Android devices and the confidentiality of users’ sensitive information. To combat this, leveraging advanced technologies like AI legalese decoder can provide valuable insights, aiding in the understanding of the report and implementation of effective security measures. Additionally, the report’s mention of increasing losses due to attacks emphasizes the necessity for heightened security protocols to safeguard the crypto industry and protect users’ assets.

