Microsoft discovers new lightweight backdoor that steals cryptocurrency
2026-06-21T20:51:48Z•cc2a3db7c9192f38e32a1f90fe6f956d3ad691e330beeaf0ea1718913581498e
amd-memory-cryptobackdoorbeats-eavesdroppingbotnet-dismantledcopilot-2fa-bypasscredential-breachcrypto-clippercryptocurrency-theftdashlane-vault-theftlinux-kernel-uafmeta-ai-exploitnpm-backdoorpeopleSoft-0dayprompt-injectionsecure-bootssd-side-channelstarlette-badhostsupply-chain-compromisetorusb-spread
What happened
Feed of mid‑June 2026 security headlines: Microsoft spotted a lightweight “Crypto Clipper” backdoor that spreads over USB and communicates via Tor to steal cryptocurrency. Multiple high‑impact vulnerabilities and breaches were reported: a PeopleSoft 0‑day exfiltrating gigabytes, a critical Copilot flaw that could expose 2FA codes, and a Starlette “BadHost” vulnerability putting millions of AI agents at risk. Supply‑chain compromises surfaced (dozens of Red Hat packages backdoored via NPM; Microsoft packages laced with credential stealers), alongside a massive credential breach affecting many企業
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- cc2a3db7c9192f38e32a1f90fe6f956d3ad691e330beeaf0ea1718913581498e
- Enrichment time
- 2026-06-21T20:51:48Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.