MacOS Malware Targets Crypto Wallets Through Cracked Apps

Hackers are using cracked macOS apps to distribute information-stealing malware through DNS records, with the campaign targeting users of macOS Ventura and later. The malware, disguised as an activator for the cracked app, fetches malicious scripts from DNS records and establishes backdoor access to gather and transmit system information. Additionally, it replaces Bitcoin Core and Exodus wallets with backdoored copies to steal users' wallet details. Kaspersky researchers warn that using cracked applications is a common way for malicious actors to compromise users' computers, and this campaign demonstrates the ingenuity of threat actors in finding new methods to deliver malware.
- Cracked macOS apps drain wallets using scripts fetched from DNS records BleepingComputer
- "Activator" Alert: MacOS Malware Hides in Cracked Apps, Targeting Crypto Wallets The Hacker News
- Sneaky malware targeting MacOS users via pirated apps uncovered Cryptopolitan
- Kaspersky warns of new MacOS malware aiming at crypto wallets crypto.news
- Cyber Security Firm Issues Warning for Mac Users with Crypto BeInCrypto
Reading Insights
0
12
2 min
vs 3 min read
82%
551 → 99 words
Want the full story? Read the original article
Read on BleepingComputer