Microsoft discovers new lightweight backdoor that steals cryptocurrency

2026-06-21T20:51:48Zcc2a3db7c9192f38e32a1f90fe6f956d3ad691e330beeaf0ea1718913581498e
amd-memory-cryptobackdoorbeats-eavesdroppingbotnet-dismantledcopilot-2fa-bypasscredential-breachcrypto-clippercryptocurrency-theftdashlane-vault-theftlinux-kernel-uafmeta-ai-exploitnpm-backdoorpeopleSoft-0dayprompt-injectionsecure-bootssd-side-channelstarlette-badhostsupply-chain-compromisetorusb-spread

What happened

Feed of mid‑June 2026 security headlines: Microsoft spotted a lightweight “Crypto Clipper” backdoor that spreads over USB and communicates via Tor to steal cryptocurrency. Multiple high‑impact vulnerabilities and breaches were reported: a PeopleSoft 0‑day exfiltrating gigabytes, a critical Copilot flaw that could expose 2FA codes, and a Starlette “BadHost” vulnerability putting millions of AI agents at risk. Supply‑chain compromises surfaced (dozens of Red Hat packages backdoored via NPM; Microsoft packages laced with credential stealers), alongside a massive credential breach affecting many企業

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
cc2a3db7c9192f38e32a1f90fe6f956d3ad691e330beeaf0ea1718913581498e
Enrichment time
2026-06-21T20:51:48Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.