Scan to download
BTC $74,813.30 +0.24%
ETH $2,337.94 -0.58%
BNB $631.25 +1.45%
XRP $1.43 +1.96%
SOL $88.26 +3.93%
TRX $0.3267 +0.24%
DOGE $0.0982 +3.41%
ADA $0.2561 +4.30%
BCH $453.19 +2.92%
LINK $9.46 +2.40%
HYPE $43.83 -1.46%
AAVE $113.66 +7.23%
SUI $0.9935 +3.68%
XLM $0.1669 +5.38%
ZEC $341.23 -0.43%
BTC $74,813.30 +0.24%
ETH $2,337.94 -0.58%
BNB $631.25 +1.45%
XRP $1.43 +1.96%
SOL $88.26 +3.93%
TRX $0.3267 +0.24%
DOGE $0.0982 +3.41%
ADA $0.2561 +4.30%
BCH $453.19 +2.92%
LINK $9.46 +2.40%
HYPE $43.83 -1.46%
AAVE $113.66 +7.23%
SUI $0.9935 +3.68%
XLM $0.1669 +5.38%
ZEC $341.23 -0.43%

The hacker group Librarian Ghouls attacks Russian devices for cryptocurrency mining

2025-06-11 14:23:54
Collection

ChainCatcher news, the hacker group Librarian Ghouls (also known as Rare Werewolf) has infiltrated hundreds of Russian devices and is using them for cryptocurrency mining.

The group spreads malware through phishing emails disguised as legitimate organizations, establishing remote connections after infecting devices and disabling security systems such as Windows Defender. The hackers collect information on the devices' RAM, CPU cores, and GPU to optimize the configuration of cryptocurrency mining programs. This hacking incident began in December 2023, with the attack primarily affecting industrial enterprises and engineering schools in Russia, while there are also victims in Belarus and Kazakhstan.

Kaspersky speculates that Librarian Ghouls may be hacktivists, as they rely on legitimate third-party tools rather than developing their own malware, which is a common tactic used by similar organizations.

app_icon
ChainCatcher Building the Web3 world with innovations.