Security

A Backdoored Tor Browser is Being Used to Steal Bitcoin From Tor Users

A trojanized version of the Tor Browser is currently targeting Russian users to steal their Bitcoin funds. This was discovered by ESET security researchers.

When victims try make any Bitcoin transactions, the Backdoored Tor browser will automatically replace the original destination address with another address controlled by criminals.

The attackers are promoting their trojanized version of the Tor Browser through posting spam message on some popular Russian cryptocurrency websites to encourage victims to download and use the infected browser. Two domain names are used to distrubute the infected browser tor-browser[.]org and torproect[.]org

At the moment of publishing, the cryptocurrency wallets controlled by the attackers received 863 transactions worth of $40,000 in Bitcoin cryptocurrency.

Example of spam message promoting tor-browser[.]org . Image credit: welivesecurity.com
June G. Bauer

Pop cultureaholic, Technology expert, Web fanatic and a Social media geek. If you have any questions or comments please feel free to email her at june@thecoinspost.com or contact her on Twitter @JuneTBauer1

Recent Posts

$27 Million Gone: BigONE Exchange Suffers Major Hack

On July 16, 2025, crypto exchange BigONE confirmed that it was hacked. The attacker stole… Read More

3 weeks ago

Firefox Add-ons Store Hit by Massive Wave of Fake Wallet Extensions

Researchers uncovered coordinated campaign of over 40 malicious Firefox extensions. These add‑ons mimic trusted… Read More

1 month ago

French Police Arrest Crypto Kidnappers After Finger Cutting

Paris, France – French police arrested several suspects this week tied to disturbing May… Read More

2 months ago

PayPal USD Plans to Use Stellar for New Use Cases

PayPal just announced big plans for its stablecoin. The company wants to bring PayPal USD… Read More

2 months ago

Binance Delists Four Major Cryptocurrencies: What You Need to Know

Binance, the world's largest cryptocurrency exchange has announced its plans to delist and pause trading… Read More

1 year ago

LocalMonero Announces 6-Month Shutdown Plan

LocalMonero, the peer-to-peer exchange platform for the privacy-focused cryptocurrency Monero (XMR), will be shutting down… Read More

1 year ago