Close Menu
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Categories
  • Altcoins (1,896)
  • Analysis (2,065)
  • Bitcoin (2,660)
  • Blockchain (1,603)
  • DeFi (1,898)
  • Ethereum (1,897)
  • Event (64)
  • Exclusive Deep Dive (1)
  • Landscape Ads (2)
  • Market (1,942)
  • Press Release (2)
  • Press Releases (5)
  • Reddit (1,310)
  • Regulation (1,814)
  • Security (2,537)
  • Thought Leadership (3)
  • Uncategorized (2)
  • Videos (43)
Hand picked
  • The silent quantum crisis that could undermine DeFi
  • Tether and Circle Inject $ 12.75 billion on the market in 30 days – Details
  • Why faces a lower risk despite the two -digit price gains
  • How the obsession with Michael Saylor’s Bitcoin started (and changed everything)
  • Space ID and 0G Labs launch areas .0G for AI and chain identity applications
We are social
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Facebook X (Twitter) Instagram
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
Facebook X (Twitter) Instagram YouTube LinkedIn
Altcoin ObserverAltcoin Observer
  • Regulation
  • Bitcoin
  • Altcoins
  • Market
  • Analysis
  • DeFi
  • Security
  • Ethereum
Events
Altcoin ObserverAltcoin Observer
Home»Altcoins»New malware uses false advertisements to hit cryptographic wallets on Windows, Mac, Linux
Altcoins

New malware uses false advertisements to hit cryptographic wallets on Windows, Mac, Linux

September 12, 2025No Comments
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
26a0.png
Share
Facebook Twitter LinkedIn Pinterest Email


Newly discovered transformer malware modwareers nicknamed Modstealer slides antivirus systems and targets cryptographic wallets on Windows, MacOS and Linux, according to researchers from the Apple Device Mosyle Safety Company.

The main dishes to remember:

  • The malicious Modstealer software escapes the detection of antivirus and targeting cryptographic wallets through windows, macOS and Linux.
  • Malware spreads through false advertisements and extracts private keys, identification information and portfolio data.
  • Researchers warn that Modstealer is part of a growing trend of malware as a service.

Modstealer has remained not detected by the main antivirus engines since its download for the first time on Virustotal almost a month ago, reported Thursday 9to5mac.

Malware is distributed by false advertisements of job recruiters intended for developers, an increasing tactic among cybercriminals.

The victims were deceived in the execution of the malicious JavaScript file

The victims are led to manage a malicious JavaScript file written in NODEJS, which avoids detection by the traditional defenses based on the signature.

Unlike more basic info, Modstealer is responsible for functionalities designed for stealth and scale.

It targets 56 Cryptographic wallet extensions based on a browser, including those of Safari, and is capable of extracting private keys, identification information, configuration files and certificates.

The papermap and screen capture tools are also integrated, in parallel with the execution of the remote code, which can give attackers an almost total control of an infected device.

On macOS, malware uses Apple’s Launchctl tool to gain persistence by losing a launch.

From there, he silently monitors the activity and sends data to a remote server who would be hosted in Finland but sent by the German infrastructure.

⚠ False advertisements paid

Advertising on the scam are apparently real announcements on Twitter and Google who announce false gifts and paratroopers. Their goal is to encourage you to connect your wallet and sign malicious transactions.

🚫 Never use links in paid ads or search results to access Airdrops! pic.twitter.com/mofjbgp345

– Phantom (@phantom) January 29, 2024

Researchers think that Modstealer is part of a malware ecosystem as a growing service (MAAS), where advanced malware packages are sold to affiliates that deploy them without the need for technical expertise.

This reflects a broader trend in the space of cybercrime: infostators now dominate Mac malicious software, with JAMF signaling a 28% increase in these threats in only 2025.

The implications for crypto users are particularly serious, given the emphasis put by malware on portfolio extensions and sensitive identification information from the blockchain.

“It’s just a Mac problem,” Mosyle said in a statement. “The multiplatform nature of Modstealer, combined with its furtive distribution model and Maas, represents an evolving threat to developers, traders and businesses.”

By emphasizing the escape of antivirus systems, the campaign highlights the need for more advanced safety solutions based on behavior.

The investor loses $ 3 million in crypto-phishing scam

As indicated, a cryptocurrency investor was the victim of a phishing scam, losing $ 3.05 million in Tether (USDT) after having signed a malicious blockchain transaction without knowing.

On Wednesday, the loss, reported by the blockchain analysis platform, underlines the growing threat of phishing attacks targeting digital active holders.

The striker has exploited a common habit among Crypto users: validate only the first and last characters of a portfolio address while ignoring the environment.

Crypto investors have lost more than $ 2.2 billion against hacks, scams and violations in the first half of 2025, largely portfolio compromises and phishing attacks, according to Certik’s latest security report.

Portfolio violations alone caused $ 1.7 billion in losses on only 34 incidents, while phishing scams represented more than $ 410 million in 132 attacks.

The malicious software station uses false advertisements to hit cryptographic wallets on Windows, Mac, Linux appeared first on Cryptonews.





Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleChinese money enters the image while Bitcoin Price slams $ 114,000
Next Article No one is available for trading!

Related Posts

Altcoins

Why faces a lower risk despite the two -digit price gains

September 12, 2025
Altcoins

Tether shakes the Stablescoin market, reveals the new rival based in the United States “USAT”

September 12, 2025
Altcoins

Blackrock Eyes Tokenized Crypto Etfs and Stocks – Report – Report

September 12, 2025
Add A Comment
Leave A Reply Cancel Reply

Single Page Post
Share
  • Facebook
  • Twitter
  • Instagram
  • YouTube
Featured Content
Event

Vienna Blockchain Week 2025: Europe’s Web3 Powerhouse Returns!

September 8, 2025

Vienna, Austria – September 9–11, 2025 – Mark your calendars, because DLT Austria is bringing…

Event

MERGE Madrid 2025: Europa y Latam unidos a través de Web3

September 5, 2025

Este octubre, Madrid se convertirá en el epicentro de la tecnología Web3, blockchain y los…

1 2 3 … 54 Next
  • Facebook
  • Twitter
  • Instagram
  • YouTube

Why faces a lower risk despite the two -digit price gains

September 12, 2025

Tether shakes the Stablescoin market, reveals the new rival based in the United States “USAT”

September 12, 2025

Blackrock Eyes Tokenized Crypto Etfs and Stocks – Report – Report

September 12, 2025
Facebook X (Twitter) Instagram LinkedIn
  • About us
  • Disclaimer
  • Terms of service
  • Privacy policy
  • Contact us
© 2025 Altcoin Observer. all rights reserved by Tech Team.

Type above and press Enter to search. Press Esc to cancel.

bitcoin
Bitcoin (BTC) $ 116,296.16
ethereum
Ethereum (ETH) $ 4,697.05
xrp
XRP (XRP) $ 3.12
tether
Tether (USDT) $ 1.00
solana
Solana (SOL) $ 243.67
bnb
BNB (BNB) $ 928.89
usd-coin
USDC (USDC) $ 1.00
dogecoin
Dogecoin (DOGE) $ 0.276085
staked-ether
Lido Staked Ether (STETH) $ 4,686.54
tron
TRON (TRX) $ 0.351746