• About Us
  • Privacy Policy
  • Contact Us
Subscribe
BitcoinCryptos - News About Bitcoin & Cryptos
  • Home
  • Bitcoin
  • Ethereum
  • Dogecoin
  • Litecoin
  • Cryptocurrency
  • Blockchain
  • Regulation
  • Market
  • Prices
No Result
View All Result
  • Home
  • Bitcoin
  • Ethereum
  • Dogecoin
  • Litecoin
  • Cryptocurrency
  • Blockchain
  • Regulation
  • Market
  • Prices
No Result
View All Result
BitcoinCryptos
No Result
View All Result
Home Cryptocurrency

New “ModStealer” Malware Targets Crypto Wallets, Evades Antivirus Detection

September 12, 2025
in Cryptocurrency
0
New “ModStealer” Malware Targets Crypto Wallets, Evades Antivirus Detection
Share on FacebookShare on Twitter

Related articles

Solana Ecosystem Trends Among Top Gainers as Alpenglow Discussions Increase

Solana Ecosystem Trends Among Top Gainers as Alpenglow Discussions Increase

September 12, 2025
XRP Whales Dump 40M Tokens, Price Holds $3

XRP Whales Dump 40M Tokens, Price Holds $3

September 12, 2025


Key Notes

  • A new malware named “ModStealer” targets crypto wallets across multiple operating systems.
  • It spreads via fake recruiter ads and has remained undetected by major antivirus engines.
  • The malware can steal private keys from 56 different browser wallet extensions.

A new cross-platform malware named “ModStealer” actively targets crypto wallets while remaining undetected by major antivirus software.

The malware is reportedly built to steal sensitive data from users on macOS, Windows, and Linux systems. It has been active for nearly a month before its discovery.


On Sept. 11, first detailed by 9to5Mac, an Apple product-focused publication, in a conversation with the Apple device management firm Mosyle, ModStealer spreads through fake job recruiter ads aimed at developers.

This method is a form of deception similar to sophisticated social engineering scams that have recently resulted in massive crypto user losses.

Beyond crypto wallets, the malware also targets credential files, configuration details, and certificates. It uses a heavily obfuscated JavaScript file written with NodeJS to avoid detection by traditional signature-based security tools.

How ModStealer Operates

The malware establishes persistence on macOS by abusing Apple’s launchctl tool, allowing it to run silently in the background as a LaunchAgent. Data is then sent to a remote server located in Finland but tied to infrastructure in Germany, a method likely used to hide the operator’s actual location.

Mosyle’s analysis found that it targets explicitly 56 different browser wallet extensions, including those on Safari, to extract private keys, highlighting the importance of using secure decentralized crypto wallets.

The malware can also capture clipboard data, take screenshots, and execute remote code, giving attackers near-total control over an infected device.

This discovery follows other recent security breaches in the crypto ecosystem. Earlier this week, a widespread NPM supply chain attack attempted to compromise developers using spoofed emails to steal credentials.

That attack aimed to hijack transactions across multiple chains, including Ethereum

ETH
$4 568



24h volatility:
3.2%


Market cap:
$552.38 B



Vol. 24h:
$32.02 B



and Solana

SOL
$238.6



24h volatility:
5.5%


Market cap:
$129.44 B



Vol. 24h:
$12.60 B



, by swapping crypto addresses.

However, it was largely contained, with attackers stealing only about $1,000, a minor sum compared to other major crypto heists where hackers have successfully laundered and reinvested millions in stolen assets.

Researchers at Mosyle believe ModStealer fits the profile of a “Malware-as-a-Service” (MaaS) operation. This model, increasingly popular with cybercriminals, involves selling ready-made malware to affiliates who may have minimal technical skills.

Mosyle stated the threat is a reminder that signature-based protections alone are not enough and that behaviour-based defences are necessary to stay ahead of new attack vectors.

next

Disclaimer: Coinspeaker is committed to providing unbiased and transparent reporting. This article aims to deliver accurate and timely information but should not be taken as financial or investment advice. Since market conditions can change rapidly, we encourage you to verify information on your own and consult with a professional before making any decisions based on this content.

Cryptocurrency News, News

Zoran Spirkovski

As a Web3 marketing strategist and former CMO of DuckDAO, Zoran Spirkovski translates complex crypto concepts into compelling narratives that drive growth. With a background in crypto journalism, he excels in developing go-to-market strategies for DeFi, L2, and GameFi projects.

Zoran Spirkovski on X




Source link

Tags: AntiViruscryptodetectionEvadesMalwareModStealerTargetswallets
Share76Tweet47

Related Posts

Solana Ecosystem Trends Among Top Gainers as Alpenglow Discussions Increase

Solana Ecosystem Trends Among Top Gainers as Alpenglow Discussions Increase

September 12, 2025
0

Key NotesThe Alpenglow upgrade received 98.27% approval, promising sub-second transaction finality for real-time gaming applications.Pump.fun deposited $74.24 million worth of...

XRP Whales Dump 40M Tokens, Price Holds $3

XRP Whales Dump 40M Tokens, Price Holds $3

September 12, 2025
0

Key NotesMarket whales dumped 40 million XRP worth $120 million in one day.XRP price climbs to $3.04, the highest since...

Polygon Taps Cypher Capital to Expand POL to Middle East

Polygon Taps Cypher Capital to Expand POL to Middle East

September 12, 2025
0

Key NotesPolygon partners with Cypher Capital to expand POL access in the Middle East.Institutions to gain structured entry, yield options,...

Tether Launches USAT Stablecoin for US Market Under Former White House Crypto Czar Bo Hines

Tether Launches USAT Stablecoin for US Market Under Former White House Crypto Czar Bo Hines

September 12, 2025
0

Key NotesFormer White House Crypto Council Executive Director Bo Hines will lead the new US-regulated stablecoin initiative.USAT will be fully...

THORChain Co‑Founder Loses $1.3M in Deepfake Scam

THORChain Co‑Founder Loses $1.3M in Deepfake Scam

September 12, 2025
0

Key NotesJP’s old Metamask wallet and iCloud Keychain were recently compromised by North Korean hackers.He revealed that primary Vultisig wallets...

Load More
Solana Ecosystem Trends Among Top Gainers as Alpenglow Discussions Increase

Solana Ecosystem Trends Among Top Gainers as Alpenglow Discussions Increase

September 12, 2025
0

Key NotesThe Alpenglow upgrade received 98.27% approval, promising sub-second transaction finality for real-time gaming applications.Pump.fun deposited $74.24 million worth of...

WisdomTree launches tokenized fund for private debt exposure with $25 minimum

WisdomTree launches tokenized fund for private debt exposure with $25 minimum

September 12, 2025
0

Key Takeaways WisdomTree has launched a tokenized fund that provides exposure to private debt using blockchain technology. The minimum investment...

From $108K to $92K (Market Update)

Bitcoin Hits $115K After CPI Data and Ahead of FOMC as BNB, HYPE Break Records: Your Weekly Recap

September 12, 2025
0

The business week was marked by important macroeconomic events, including the much-anticipated CPI data for August, which could set the...

Blockstream Warns of Scammers Using Phishing Emails Targeting Users

Blockstream Warns of Scammers Using Phishing Emails Targeting Users

September 12, 2025
0

Blockstream, an infrastructure and hardware wallet provider, issued a warning about a new email phishing campaign attempting to target Blockstream...

XRP Whales Dump 40M Tokens, Price Holds $3

XRP Whales Dump 40M Tokens, Price Holds $3

September 12, 2025
0

Key NotesMarket whales dumped 40 million XRP worth $120 million in one day.XRP price climbs to $3.04, the highest since...

We have all the news related to the crypto market and we make sure to bring and publish all the updates as fast as we can.

Categories

  • Bitcoin
  • Blockchain
  • Cryptocurrency
  • Dogecoin
  • Ethereum
  • Litecoin
  • Market
  • Regulation

Archives

  • 2025
  • 2024
  • 2023
  • 2022
  • 2021

Newsletter

    • About Us
    • Privacy Policy
    • Contact Us

    © 2021 bitcoincryptos.com

    Please enter CoinGecko Free Api Key to get this plugin works.
    No Result
    View All Result
    • Home
    • Bitcoin
    • Ethereum
    • Dogecoin
    • Litecoin
    • Cryptocurrency
    • Blockchain
    • Regulation
    • Market
    • Prices

    © 2018 JNews by Jegtheme.