ADVERTISEMENT
Tuesday, June 2, 2026
Tech | Business | Economy
No Result
View All Result
  • Technology
    • Trends
    • Telecoms
      • Broadband
    • ConsumerTech
      • Gadgets and Appliances
      • Apps
      • Accessories
      • Reviews
      • Unboxing
    • EnterpriseTECH
    • Security & Data Protection
    • How To
  • Business
    • Company News
    • StartUPs
      • Founder’s Story
      • Funding
    • Deals
    • People & Moves
    • SME & Entrepreneur Focus
    • BUSINESS SENSE FOR SMEs
    • Competition & Market Positioning
    • Commerce & Mobility
    • Travel
    • WomenPreneurs
  • Economy
    • Macroeconomic Trends
      • Macro Monday
      • TE Insights
    • Finance
      • Banks
      • Fintech
      • Insurance
      • Digital Assets
      • Personal Finance
    • Policies
      • Tech & Society
    • Market Analysis
    • Jobs & Workforce Economy
  • Features
    • Guest Writer
      • Chidiverse
      • Digital Assets
      • GameTech
    • EventDIARY
    • IndustryINFLUENCERS
    • MarkTECH
    • TBS
    • NewsEXTRA
  • Editorial
  • Brand Content
  • TECHECONOMY TV
Tuesday, June 2, 2026
Tech | Business | Economy
No Result
View All Result
Tech | Business | Economy
No Result
View All Result

Home » NaiveCopy; Highly Active Cyber Threat Targeting Cryptocurrency Industry

NaiveCopy; Highly Active Cyber Threat Targeting Cryptocurrency Industry

Techeconomy by Techeconomy
August 2, 2022
in Security & Data Protection
Reading Time: 3 mins read
1

In the second quarter of 2022, Kaspersky researchers witnessed Advanced Persistent Threat (APT) actors increasingly targeting the cryptocurrency industry.

Using cryptocurrency-related content and warnings from law enforcements as bait, the actor behind this new and highly active campaign, dubbed “NaiveCopy”, attacked stock and cryptocurrency investors in South Korea.

Further analysis of NaiveCopy’s tactics and techniques revealed another related campaign active the year before which targeted unknown entities in both Mexico and the UK. This, along with other discoveries, is revealed in Kaspersky’s latest quarterly threat intelligence summary.

NaiveCopy APT actors are continuously changing their tactics, sharpening their toolsets and developing new techniques. To help users and businesses keep up with these changes and stay informed about the potential threats they might face, Kaspersky’s Global Research and Analysis (GReAT) team provides quarterly reports about the most important developments across the advanced persistent threat landscape.

The three-month APT trends report is created using Kaspersky’s private threat intelligence research and includes major developments and cyber-incidents that researchers believe everyone should be aware of.

Subscribe to our Telegram channel for the latest updates.

Follow the latest developments with instant alerts on breaking news, top stories, and trending headlines.

Join Channel

In the second quarter of 2022, Kaspersky researchers discovered a new, highly active campaign which had started in March and targeted stock and cryptocurrency investors.

This is unusual considering most APT actors do not pursue financial gain. The actor used cryptocurrency-related contents and complaints from law enforcement as themes to lure its victims. The infection chains involved remote template injection, spawning a malicious macro which starts a multi-stage infection procedure using Dropbox.

After beaconing the victim’s host information, the malware then attempts to fetch the final stage payload.

Luckily, Kaspersky experts had a chance to acquire the final stage payload, consisting of several modules used for exfiltrating sensitive information from the victim.

By analysing this payload, Kaspersky researchers found additional samples that had been used a year ago during another campaign against entities in Mexico and UK.

Kaspersky experts do not see any precise connections to known threat actors, however they believe that they are familiar with the Korean language and have utilised a similar tactic previously used by the Konni group to steal the login credentials for a renowned Korean portal. The Konni group is a threat actor which has been active since mid-2021, mostly targeting Russian diplomatic entities.

“Over the course of several quarters, we have seen APT actors turn their attention to the cryptocurrency industry. Using various techniques, the actors seek not only information, but money as well. This is an unusual, but increasing, tendency for the APT landscape. In order to combat the threats, organisations need to gain visibility across the recent cyberthreat landscape. Threat intelligence is an essential component that enables reliable and timely anticipation of such attacks,” comments David Emm, principal security researcher at Kaspersky’s GReAT. 

To read the full APT Q2 2022 trends report, visit Securelist.com

0Shares
MTN Live It 100 Thematic Campaign
Previous Post

Shuttlers Partners with RCCG to Transport 50,000 Members

Next Post

Pantami, NCS Executives Visit Gov Abiodun as S3N2022 Opens Today

Techeconomy

Techeconomy

Related Posts

Africa Physical Security market | CCTV

Genetec: Africa’s Security Infrastructure Has Entered Major Transformation Phase

May 28, 2026
Chimezie Emewulu Seamfix | Digital Identity

From His Father’s Kidnapping to 100 Million Identities: Seamfix CEO on Driving Africa’s Digital Trust Revolution

May 28, 2026

How Smart Glasses are Rewriting the Rules of Consent in South Africa

May 27, 2026
Load More
Next Post

Pantami, NCS Executives Visit Gov Abiodun as S3N2022 Opens Today

Comments 1

  1. Pingback: NaiveCopy; Extremely Energetic Cyber Menace Focusing on Cryptocurrency Business – TechEconomy.ng - Only Easy Tech

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

I agree to the Terms & Conditions and Privacy Policy.

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Techeconomy Podcast
Techeconomy Podcast

The Techeconomy Podcast is a thought-leadership show exploring the powerful intersection of technology, business, and the economy, with a strong focus on Africa’s fast-evolving digital landscape.

Financing the Future: Venture Debt, Local Capital & African Innovation | TBS May 2026 Webinar
byTecheconomy

Africa’s innovation ecosystem is evolving, but where will the funding for the next generation of startups come from?

In this edition of the Techeconomy Business Series (TBS) May 2026, industry experts explore how local capital, venture debt, and smarter investment structures are redefining startup growth and innovation across Africa.

🎙️ Featured Speakers:

* Ebunoluwa Ashley-Dejo

* Damilare Davola

* Success Ajilore (STN & Accelerated Plus)

Key conversations in this webinar include:

✔️ The future of startup financing in Africa

✔️ Venture debt and alternative funding models

✔️ The role of local investors in scaling innovation

✔️ Sustainable investment strategies for African startups

✔️ Opportunities and challenges in the African tech ecosystem

Subscribe for more conversations shaping Africa’s digital economy and innovation landscape.

#TBS2026 #AfricanInnovation #VentureDebt #StartupFinance #TechInAfrica #Techeconomy #AfricanStartups #InnovationEconomy

Financing the Future: Venture Debt, Local Capital & African Innovation | TBS May 2026 Webinar
Financing the Future: Venture Debt, Local Capital & African Innovation | TBS May 2026 Webinar
May 27, 2026
Techeconomy
PROTECTING INNOVATION IN AFRICA’S STARTUP ECOSYSTEM
April 29, 2026
Techeconomy
BUILDING TRUST IN AFRICA ECOSYSTEM
February 27, 2026
Techeconomy
Navigating a Career in Tech Sales
January 29, 2026
Techeconomy
How Technology is Transforming Education, Health, and Business
November 27, 2025
Techeconomy
Search Results placeholder
MTN Live It 100 Thematic Campaign
ADVERTISEMENT
  • About Us
  • Careers
  • Contact Us
  • Privacy Policy

© 2026 TECHECONOMY.

No Result
View All Result
  • Technology
  • Business
  • Economy
  • Features
  • Editorial
  • Brand Content
  • TECHECONOMY TV

© 2026 TECHECONOMY.

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.