慢雾警示:Linux Snap商店遭“域名复活攻击”瞄准加密货币钱包

慢雾警示:Linux Snap商店遭“域名复活攻击”瞄准加密货币钱包

安全公司慢雾报告称,Linux用户正面临新威胁,黑客利用复活的过期域名,通过Snap商店分发带有后门的加密货币钱包应用。

事实核查
The evidence strongly and consistently supports all key components of the statement. One highly relevant source explicitly attributes the identification of a novel attack on the Linux Snap Store to the security firm SlowMist, confirming their involvement. All provided sources corroborate that the Linux Snap Store is the platform being targeted, and that the attacks are aimed at cryptocurrency wallet users. The specific mechanism of the attack, involving the takeover of expired domains, is described in multiple sources. While the exact term 'Domain Revival Attack' is not used, one source uses the nearly identical and synonymous term 'Domain Resurrection Attack' to describe the threat. The slight variation in terminology is minor and does not undermine the core accuracy of the statement. There are no contradictions in the evidence; the sources complement each other to form a coherent picture that aligns with the claim.
摘要

慢雾首席信息安全官23pds警告称,近期发生一起针对Linux用户的Snap商店攻击事件。黑客利用已过期的开发者域名,向仿冒Exodus、Ledger Live和Trust Wallet的应用推送恶意更新。这些假冒应用诱骗用户输入助记词,从而使攻击者窃取加密货币资产。被入侵的域名包括storewise.tech和vagueentertainment.com。

术语与概念
  • Domain Revival Attack: 一种黑客技术,即攻击者注册曾关联合法应用的已过期域名,从而分发恶意更新。
  • Mnemonic Phrase: 在钱包设置过程中生成的一组用于恢复加密货币钱包的单词。
  • Linux Snap Store: 一种Linux软件分发平台,采用Snap软件包格式提供应用程序。