Russia-based Sality watched for copied bitcoin and Ethereum addresses and quietly replaced them with the attacker’s. CrowdStrike and law enforcement have now isolated more than 15,000 infected machines.
Source
This article is syndicated for educational reading. For the latest updates, visit the original publisher.
Read on coindesk.com