Odaily Planet Daily News Cybersecurity experts recently discovered a double malware attack targeting users inside and outside the cryptocurrency industry. In its latest report, cyber intelligence company Silent Push revealed a malicious activity called PoisonSeed, which first forged the login page of bulk email service providers such as Mailchimp and SendGrid to steal user credentials. The attacker sent a fake email, claiming that the user's account was restricted, tricking them into logging into a high-imitation website. After entering the credentials, the attacker quickly and automatically exported the email subscription list. Subsequently, the attacker used the stolen subscription list to impersonate Coinbase to send phishing emails to the victim's contacts, saying that the exchange was "transitioning to a self-hosted wallet" and attached a 12-word mnemonic phrase to trick users into importing their wallets, but in fact let hackers control their assets. (Decrypt)