The Librarian Ghouls APT group has covertly leveraged Russian business computers, transforming them into illicit crypto mining operations while simultaneously exfiltrating sensitive financial data and private keys. According to research from Kaspersky, the Librarian Ghouls APT group, also identified as Rare Werewolf and Rezet, orchestrated a dual-purpose cyberattack. This sophisticated campaign covertly leverages victims’ own hardware for crypto mining while simultaneously stealing sensitive crypto wallet credentials and private keys through targeted phishing. This cybercriminal operation reportedly gains unauthorized remote access to deploy Monero mining software on victim machines, while simultaneously extracting valuable cryptocurrency wallet credentials and private keys
source: https://news.shib.io/2025/06/12/russian-devices-hijacked-for-covert-crypto-mining-key-theft/?utm_source=rss&utm_medium=rss&utm_campaign=russian-devices-hijacked-for-covert-crypto-mining-key-theft