SECURITY·중요도 8·2026. 07. 15.·The Hacker News

OkoBot Malware Framework Injects Seed Phrase Phishing Into Ledger and Trezor Apps

── KO ──────────────────

OkoBot 악성코드 프레임워크가 Ledger와 Trezor 앱에 피싱 공격을 주입하고 있습니다.

OkoBot이라는 악성코드 프레임워크가 2025년 4월부터 Windows 기기에서 운영되고 있으며, 이 모듈은 하드웨어 지갑 소유자에게 복구 구문을 빼내기 위해 설계되었습니다. 감염된 PC에서 요청이 지갑의 데스크탑 소프트웨어 내부에서 발생하며, 때때로 장치를 처음 연결할 때까지 기다립니다. 페이지는 악성이며, 주위의 앱은 사용자가 설치한 실제 애플리케이션입니다.


── EN ──────────────────

The OkoBot malware framework injects phishing into Ledger and Trezor apps.

The OkoBot malware framework has been operating on Windows machines since April 2025, with a module designed to scam hardware wallet owners out of their recovery phrases. On an infected PC, the request originates from within the wallet's own desktop software, sometimes waiting for the user to plug in the device first. The malicious page disguises itself as the real application that the user installed.

원문 보기 →목록으로