Cybersecurity firm Malwarebytes has identified a campaign targeting crypto traders using fake TradingView versions.
Social Engineering on Reddit
Hackers use social engineering tactics on Reddit to distribute 'cracked' versions of TradingView, which contain Lumma Stealer for Windows and Atomic Stealer for Mac. These programs are intended to steal cryptocurrency wallets.
Technical Analysis of Malware
Malwarebytes analysis shows that the malware variants specifically target cryptocurrency users. The Mac version uses a new variant of Atomic Stealer with anti-analysis features, extracting data to a server in the Seychelles.
Protective Measures for Crypto Users
Malwarebytes highlights warning signs such as instructions to disable security software. Crypto users should be wary of software in encrypted archives, as cracked software often leads to infections.
Crypto traders must remain vigilant, avoiding fake software and maintaining active antivirus protection to guard against such threats.