BTC $64,765.25 +0.99%
ETH $1,922.50 +1.15%
BNB $585.55 +3.02%
XRP $1.08 +0.64%
SOL $74.25 +1.14%
TRX $0.3284 +0.57%
DOGE $0.0700 -0.44%
ADA $0.1656 +1.37%
BCH $211.53 +0.28%
LINK $8.44 +1.40%
HYPE $52.98 -3.56%
AAVE $99.01 +1.05%
SUI $0.6913 +0.70%
XLM $0.1722 -0.96%
ZEC $475.12 +3.25%
BTC $64,765.25 +0.99%
ETH $1,922.50 +1.15%
BNB $585.55 +3.02%
XRP $1.08 +0.64%
SOL $74.25 +1.14%
TRX $0.3284 +0.57%
DOGE $0.0700 -0.44%
ADA $0.1656 +1.37%
BCH $211.53 +0.28%
LINK $8.44 +1.40%
HYPE $52.98 -3.56%
AAVE $99.01 +1.05%
SUI $0.6913 +0.70%
XLM $0.1722 -0.96%
ZEC $475.12 +3.25%

bitrefill

All
Article
Flash

A man in the United States implanted malware through Steam games to steal cryptocurrency assets, infecting about 8,000 devices

The U.S. federal prosecutors have charged a 21-year-old Florida man, Zyaire Wilkins, accusing him of implanting malware to steal cryptocurrency assets in at least 8 games with accomplices between May 2024 and February 2026, spreading it through gaming platforms, resulting in approximately 8,000 devices being infected and about 80 cryptocurrency wallets being stolen, with the amount involved exceeding $220,000.The indictment documents show that the games involved include BlockBlasters, Chemia, Dashverse, DashFPS, Lampy, Lunara, PirateFi, and Tokenova. Some of these games had previously been removed from Steam due to security risks. Investigators stated that the suspect promoted these games through platforms such as Discord, Telegram, X, and LinkedIn, luring users to download and install them, after which the malware stole sensitive information from victims and siphoned off cryptocurrency wallet assets.The FBI indicated that law enforcement identified the suspect through on-chain fund flow analysis and digital payment records. The investigation found that his associated cryptocurrency wallet had purchased over 150 gift cards on the cryptocurrency gift card platform Bitrefill, including Uber Eats gift cards, ultimately helping investigators confirm his phone number and address. The case has now been filed in the U.S. District Court for the Western District of Washington.

Bitrefill disclosed that it was attacked by suspected North Korean hackers, resulting in a customer data breach, and has shut down relevant systems for isolation

Bitcoin payment service provider Bitrefill disclosed on platform X that it suffered a cyberattack on March 1, 2026, resulting in a customer data breach. The attack originated from a compromised employee's laptop and allowed the attackers to access certain databases and cryptocurrency wallets.Investigations revealed that the attack method was highly similar to past attacks on cryptocurrency companies by the North Korean DPRK Lazarus/Bluenoroff hacker group. Approximately 18,500 purchase records involved limited customer information (email, cryptocurrency payment addresses, and IP metadata), with about 1,000 records having customer name information stored in an encrypted format, but potentially accessible. Bitrefill stated that customers do not need to take special actions but are advised to be vigilant for unusual information.Bitrefill further added that it has currently shut down related systems for isolation and is collaborating with security experts, on-chain analysts, and law enforcement. Operations have nearly returned to normal. The company emphasized that it is long-term profitable and financially robust enough to absorb this loss and will continue to strengthen cybersecurity measures, including internal access controls, monitoring, and emergency response mechanisms.
app_icon
ChainCatcher Building the Web3 world with innovations.