Breaking
April 23, 2025

Zoom remote control feature abused for crypto stealing cyberattacks | usagoldmines.com


  • Cybercriminals are inviting victims to talk to “journalists”
  • On the Zoom call, they’re asked to grant permissions for remote access
  • Those that grant the permissions lose their crypto

Hackers are abusing Zoom’s remote desktop feature to steal people’s cryptocurrency, experts have warned.

Cybersecurity researchers Trail of Bits claim to have seen the attack in the wild, focusing on “high-value targets,” people who the media would often contact for comments and discussion on everyday events. The attackers would reach out via social media (X, for example), and send them a Zoom invite via Calendly, pretending to be Bloomberg journalists.

On Zoom, the attackers would join with an account named “Zoom”, and request remote control over the victim’s account. The victims would see a popup saying “Zoom is requesting remote control of your screen” which, for those used to granting permissions without thinking twice, might seem like a legitimate request from a legitimate app.

Get Keeper Personal for just $1.67/month, Keeper Family for just $3.54/month, and Keeper Business for just $7/month

​Keeper is a cybersecurity platform primarily known for its password manager and digital vault, designed to help individuals, families, and businesses securely store and manage passwords, sensitive files, and other private data.

It uses zero-knowledge encryption and offers features like two-factor authentication, dark web monitoring, secure file storage, and breach alerts to protect against cyber threats.

Preferred partner (What does this mean?)View Deal

Elusive Comet

“What makes this attack particularly dangerous is the permission dialog’s similarity to other harmless Zoom notifications,” Trail of Bits said.

“Users habituated to clicking “Approve” on Zoom prompts may grant complete control of their computer without realizing the implications.”

Once the access is granted, the attackers would move fast, deploy a stealthy backdoor or other means of retaining access, and then disconnect from the call.

The last step is to use the malware to access the victim’s cryptocurrency wallets and siphon out any funds found inside.

The researchers named the group “Elusive Comet” and said the methodology is most likely copied from Lazarus, the infamous North Korean state-sponsored entity that targets crypto businesses.

“The ELUSIVE COMET methodology mirrors the techniques behind the recent $1.5 billion Bybit hack in February, where attackers manipulated legitimate workflows rather than exploiting code vulnerabilities,” Trail of Bits said in its report.

To mitigate the risk, it would be best not to grant people or apps remote access, unless you’re 100% certain the person is benign.

Via BleepingComputer

You might also like

​ 

This articles is written by : Nermeen Nabil Khear Abdelmalak

All rights reserved to : USAGOLDMIES . www.usagoldmines.com

You can Enjoy surfing our website categories and read more content in many fields you may like .

Why USAGoldMines ?

USAGoldMines is a comprehensive website offering the latest in financial, crypto, and technical news. With specialized sections for each category, it provides readers with up-to-date market insights, investment trends, and technological advancements, making it a valuable resource for investors and enthusiasts in the fast-paced financial world.

Recent:

What is an AI-enhanced VPN, and do you need one? | usagoldmines.com

Windows 11’s crucial new ‘inetpub’ folder is laughably easy to hack | usagoldmines.com

Nvidia’s G-Assist AI now works with Twitch, Spotify, and Gemini | usagoldmines.com

Windows 10’s April update stealthily removed this Start menu feature | usagoldmines.com

I finally started using Windows Task View, 10 years later. It’s been a revelation | usagoldmines.co...

Roku’s new streaming sticks are small enough to go anywhere | usagoldmines.com

Multiple Galaxy Devices Getting Updated April Build, One UI 7 Fixes Seem Likely Tim | usagoldmines.c...

Max Has New 'Extra Member' Pricing Tiers Emily Long | usagoldmines.com

My Favorite Amazon Deal of the Day: The Kindle Colorsoft Signature Edition Daniel Oropeza | usagoldm...

Roku has two new budget streaming sticks, including a cheaper 4K HDR model, and there's a surprising...

I tried the new ChatGPT trend that gives you a glimpse into the past - here’s how you can too john-a...

Andor season 2 is laying the groundwork for one of the most mysterious and tragic events in Star War...

A huge online fraud operation is hijacking WordPress sites to send out 1.4 billion ad requests per d...

Black Mirror season 7 is a bigger hit than Ransom Canyon on Netflix – here are 3 similar series with...

Roku's Pro Series is our favorite budget mini-LED 4K TV, and now it's launching a much cheaper model...

Zuckerberg stifled Instagram because he loves Facebook, Instagram founder says Ashley Belanger | usa...

ChatGPT maker OpenAI wants to buy Chrome from Google | usagoldmines.com

I switched from Windows PCs to Chromebooks and haven’t looked back | usagoldmines.com

The ‘inetpub’ folder in Windows is laughably easy to circumvent | usagoldmines.com

NordVPN review: More than just a VPN, it’s a privacy powerhouse | usagoldmines.com

YouTube TV is Finally Getting Custom Multiviews Kellen | usagoldmines.com

You Can Get This Apple iPad Air on Sale for $370 Right Now Pradershika Sharma | usagoldmines.com

Gmail Now Makes It Easy to Unsubscribe From Newsletters En Masse Khamosh Pathak | usagoldmines.com

Netflix Builds Detailed Apple Store Replica for 'iHostage' Movie Hartley Charlton | usagoldmines.com

macOS Quick Tip: Copy and Paste Text Without Formatting Tim Hardwick | usagoldmines.com

'It was extraordinary': Andor season 2 star had a big reaction to the Star Wars show's three-episode...

Ripple cryptocurrency software library hit by major security issue, wallets under threat | usagoldm...

"More than a recognition" – PureVPN obtains the VPN Trust Seal to back up its privacy, security, an...

Telegram pledges to exit the market rather than "undermine encryption with backdoors" chiara.castro@...

'It's like returning to the scene of a crime': Wednesday season 2 release schedule confirmed in cree...

4chan may be dead, but its toxic legacy lives on Ryan Broderick, wired.com | usagoldmines.com

Republican space officials criticize “mindless” NASA science cuts Eric Berger | usagoldmines.com

Bethesda isn’t shutting down ambitious fan-made “Skyblivion” remaster project Kyle Orland | usagoldm...

Best Thunderbolt docks 2025: Extend your laptop’s capabilities | usagoldmines.com

Acer’s 240Hz 1440p OLED gaming monitor is a whopping 50% off today | usagoldmines.com

Today’s best laptop deals: Save big on work, school, home use, and gaming | usagoldmines.com

Get this magnetic power bank with wireless charging for 43% off | usagoldmines.com

Oblivion returns in stunning 4K: Elder Scrolls fans rejoice! | usagoldmines.com

Anker’s 14-port USB-C hub with dual 4K HDMI is now 28% off | usagoldmines.com

Outlook pros love this trick for a tidier inbox | usagoldmines.com

Intel plans to ‘streamline’ by laying off another 20% of its employees | usagoldmines.com

This High-Performance Xbox and PC Controller Is at Its Lowest Price Right Now Pradershika Sharma | u...

Vitamix Is Having a Huge Mother's Day Sale Right Now Allie Chanthorn Reinmann | usagoldmines.com

Nine YouTube Music Features You Should Be Using David Nield | usagoldmines.com

This Dell Inspiron Plus Is on Sale for Just $740 Right Now Pradershika Sharma | usagoldmines.com

MacBook Shipments Surge But Customer Demand Remains Unclear Hartley Charlton | usagoldmines.com

Today Is Your Last Chance to Get Three Months of Apple TV+ for $2.99/Month Mitchel Broussard | usago...

NYT Strands hints and answers for Thursday, April 24 (game #417) | usagoldmines.com

NYT Connections hints and answers for Thursday, April 24 (game #683) | usagoldmines.com

Quordle hints and answers for Thursday, April 24 (game #1186) | usagoldmines.com

Sustainability Week: How can AI help deliver on the circular economy? | usagoldmines.com

Major electronics store sees millions of user records allegedly leaked online | usagoldmines.com

Ghost of Yōtei finally has a release date, with pre-orders set to begin soon dash.wood@futurenet.com...

Sustainability Week: The case for circularity and strategic partnerships | usagoldmines.com

Bicycle bling: All the accessories you’ll need for your new e-bike Chris Cona | usagoldmines.com

Movies made with AI ‘neither help nor harm the chances’ of winning an Oscar, the Academy says in new...

AWS joins Microsoft in pausing data center projects - is AI demand falling off? | usagoldmines.com

Tesla’s death is “not close” says Musk, as operating margin drops to 2% Jonathan M. Gitlin | usagold...

Whisky Developer Halts Work on Mac Gaming Tool, Endorses CrossOver Tim Hardwick | usagoldmines.com

Tiny11 strikes again, as bloat-free version of Windows 11 is demonstrated running on Apple’s iPad Ai...

Sorry, Max's password crackdown just got serious – here’s how much it will cost to add an extra memb...

This iPhone 17 Air dummy unit video suggests the phone is so slim it might bend | usagoldmines.com

Intel reportedly set to announce huge layoffs - 20% of workforce could be cut | usagoldmines.com

Worried about bonking on your London Marathon? Strava says you should train with friends stephen.war...

New iPhone 17e leak suggests we'll get a new model every year – here's when to expect it and what we...

These 7 Nintendo Switch 2 pre-order tips helped me secure my own bundle, and they could help you too...

Ransomware hackers demand victims justify their jobs, or pay up | usagoldmines.com

Marks and Spencer has suffered a cyberattack - here’s what we know so far | usagoldmines.com

Fujifilm has officially teased its unique half-frame camera – and there could be a secret screen | ...

One of the best budget Fitbit alternatives is about to get a new upgrade matt.evans@futurenet.com (M...

Google Privacy Sandbox is no more | usagoldmines.com

Who has time to be polite to ChatGPT? I don’t understand why people say please and thank you to AI ...

A surprising 80% of people would pay for Apple Intelligence, according to a new survey – here’s why ...

Grok AI Gains Vision and Voice Features in iOS App Tim Hardwick | usagoldmines.com

Apple Hit With €500M Fine as EU Enforces Digital Markets Act Tim Hardwick | usagoldmines.com

Duda targets a major agency pain point with its new AI-powered tool | usagoldmines.com

Microsoft finally plays its trump AI card, Recall, in Windows 11 – but for me, it’s completely overs...

Sustainability Week: Scaling AI - how the UK’s hyperscale data centers are evolving for sustainabili...

The Switch 2 Pro Controller will have the same colossal battery life as the original, with a signifi...

SK Telecom reveals cyberattack, customer USIM data stolen could be used in attacks | usagoldmines.c...

The secret weapon every PC gamer needs is 30% off | usagoldmines.com

Sustainability Week: Unlocking the hidden value in e-waste - the commercial case for refurbished tec...

6 ways to extend the life of your Dyson Airwrap | usagoldmines.com

A Quick Guide to Streamlining Field Sales Management within Dynamics 365 Anuradha Sinha | usagoldmin...

Shopify is hiring ChatGPT as your personal shopper, according to a new report erichs211@gmail.com (E...

This e-ink portable monitor handles 60Hz video and won’t bankrupt you | usagoldmines.com

Sandisk Extreme Pro SSD with USB4 review: Good performance, when it connects at full speed | usagol...

T-Mobile Adds New Plans With More Hotspot Data Juli Clover | usagoldmines.com

Instagram Launches 'Edits' App to Replace CapCut Juli Clover | usagoldmines.com

This cheating app teaches all the wrong lessons about AI – but some of you still might use it lance....

Sandisk Extreme Pro SSD with USB4 review: Style and good performance — when it connects at full spee...

Google Fi Gains New $35/Month Unlimited Plan, Improved iPhone Integration Juli Clover | usagoldmines...

Apple removed 'Available Now' from the Apple Intelligence webpage, but it may not have been Apple's ...

Glass bottles in, sand out – Disney World is crushing glass to make pathways and more in its latest ...

Universities (finally) band together, fight “unprecedented government overreach” Nate Anderson | usa...

Max starts charging extra to share your streaming account | usagoldmines.com

Harper Is an Offline Alternative to Grammarly for Obsidian Justin Pot | usagoldmines.com

ChatGPT head tells court OpenAI is interested in buying Chrome Ryan Whitwam | usagoldmines.com

Drunk man walks into climate change, burns the bottoms of his feet off Beth Mole | usagoldmines.com

Reolink security cams gain ‘Works With Home Assistant’ certification | usagoldmines.com

Leave a Reply