Today Syscoin issued a security notice to its community, saying that one of its developers' Github accounts had been stolen and that the thieves had tampered with the latest Windows installer and embedded Trojan malware in the installer. Syscoin says this may affect Windows users downloading and running SYScoin Windows installation files. The Syscoin team says precautions have been provided to prevent similar incidents from happening again. SYS is up 5.59 per cent at $0.237

First, Zoom distributes clients on macOS using a pkg file (an installer format similar to Windows MSI), and when a user joins a meeting with Zoom, the user is prompted to download and allow the software. Typically, users can customize and confirm the installation in this step. However, Zoom's installer skips these steps and requires that the "pre-requirement" script be allowed to run, typically before it is formally installed, to detect whether the software is compatible with the computer.

When Electrum wallets are synchronized with malicious servers, they are instructed to "update" clients provided by hackers, resulting in the loss of assets contained in older versions. Previously, in December 2018, Electrum.

Lesson 1: Third-party Electrum servers can link your two transactions together. This can be avoided by running your own Electrum server, supported by your own full node.

Digital wallet developer Electrum has released an emergency patch saying it found a vulnerability that could lead any website hosting Electrum to steal a user's digital currency, exposing passwords to the JOHNSONRPC interface and ingelling hackers full control of the wallet. Earlier, Electrum released the first patch, but it didn't seem to solve the problem, and they released a second update urgently Sunday night local time.

Users of Bitcoin wallet Electrum are facing phishing attacks, according to Hackers broadcast messages to the Electrum client through a malicious server, prompting the user to update to v4.0.0, and if the user follows the prompt to install this "backdoor-carrying client", the private key is stolen and all digital assets are stolen. At the time of writing, at least 1,450 BTCs worth about $11.6 million had been stolen from phishing attacks that faked Electrum upgrade tips. DeViable Security Labs hereby suggests that versions of Electrum below 3.3.4 are vulnerable to such phishing attacks, and users using Electrum Wallet are requested to update to the latest version of Electrum 3.3.8 via the official website (, which has not yet been officially released, and do not use the link in the prompt to avoid asset losses.

Electrum is a popular software wallet that works by connecting to a dedicated server. These servers receive a hash of the Bitcoin address in the wallet and reply with transaction information. Electrum Wallet is fast and has few resources, but by default, it connects to these servers and can easily monitor users. In addition to Electrum, some other software uses public Electrum servers. By 2019, it is a faster and better alternative to BIP37.

Researchers at the popular Bitcoin wallet app Electrum have uncovered a malicious shanzhai act aimed at stealing seed keys. The suspicious shanzhai wallet, called Electrum Pro, appeared online in March and has been labeled malware since.