DarkCasino is an economically motivated APT group targeting cryptocurrency exchanges and online casinos.
Analyst brief
DarkCasino is an economically motivated APT group operating as a cybercriminal entity. They primarily target cryptocurrency exchanges, online casinos, network banks, and credit platforms. Using the WinRAR vulnerability CVE-2023-38831, they launch phishing attacks to steal account passwords and digital assets. Defenders should prioritize patching this specific vulnerability and enforcing multi-factor authentication to prevent account takeover.
DarkCasino
unknown
DarkCasino is an economically motivated APT group that targets online trading platforms, including cryptocurrencies, online casinos, network banks, and online credit platforms. They are skilled at stealing passwords to access victims' online accounts and have been active for over a year. DarkCasino exploits vulnerabilities, such as the WinRAR vulnerability CVE-2023-38831, to launch phishing attacks and steal online property.