securityonline.info 7/22/2026, 7:16:24 AM · external

OkoBot malware steals crypto via WordPress DDWRT exploits

OkoBot malware steals crypto via WordPress DDWRT exploits
CyberSIXT Evidence Panel
Primary Source securelist.com

THE page details the OkoBot framework, a malware family identified by Kaspersky, which has been involved in extensive cryptocurrency wallet thefts across over 25 countries. Significant vulnerabilities have been discovered within WordPress and DD-WRT systems, impacting numerous users. OkoBot utilizes sophisticated tactics, including phishing and keylogging, and operates through a multi-stage infection chain initiated by malicious software disguised as legitimate applications.

Victims are targeted primarily in Brazil and Vietnam, with Kaspersky urging vigilance against unusual SSH activity and warnings about downloading software from unverified sources.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline