• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

New Cthulhu Stealer Malware Threatens Mac Users, Including Crypto Wallets

user avatar

by Giorgi Kostiuk

a year ago


  1. How Cthulhu Stealer Works?
  2. Similarities with Other Malware
  3. Current Situation with Cthulhu Stealer

  4. A new strain of malware named Cthulhu Stealer is targeting Apple Mac users, capable of extracting personal information and accessing crypto wallets.

    How Cthulhu Stealer Works?

    The new malware appears as an Apple Disk image, disguising itself as legitimate applications like CleanMyMac or Adobe GenP. Users who open the malicious file are prompted to enter their system’s password, followed by a prompt for their MetaMask wallet password. It also targets other popular wallets installed on the device, including Coinbase, Wasabi, Electrum, Binance, Atomic, and Blockchain Wallet. The malware gathers information such as the device’s IP address and operating system, storing the stolen data in text files.

    Similarities with Other Malware

    Cybersecurity firm Cado Security identified similarities between Cthulhu Stealer and a malware called Atomic Stealer discovered in 2023. Both are designed to steal crypto wallet information, browser credentials, and keychain information.

    The functionality and features of Cthulhu Stealer are very similar to Atomic Stealer, indicating the developer of Cthulhu Stealer probably took Atomic Stealer and modified the code.a researcher from Cado Security

    Current Situation with Cthulhu Stealer

    Cthulhu Stealer is being rented out on Telegram to affiliates for $500 per month. The lead developer also takes a percentage of the profits from every successful deployment. However, the scammers behind the malware seem to have become inactive due to disputes over payments, leading to accusations of an exit scam by affiliates.

    The new Cthulhu Stealer malware poses a significant threat to Apple Mac users by stealing personal information and targeting popular crypto wallets. Users are advised to be cautious of suspicious files and not to enter their passwords on dubious sites.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

Solana's Onchain Application Ecosystem Sees Tenfold Growth in TVL

chest

Solana's application total value locked (TVL) has surged to over $30 billion, marking a tenfold increase since January 2024.

user avatarGustavo Mendoza

DeepSnitch AI DSNT Raises Over $11 Million in Presale

chest

DeepSnitch AI has successfully raised over $11 million in its presale, currently ongoing online.

user avatarRajesh Kumar

Bybit Hack Marks Largest Crypto Breach in History

chest

February 2025 saw the largest single-month loss in crypto history due to a $151 billion breach at Bybit, linked to North Korea's Lazarus Group.

user avatarMiguel Rodriguez

Senator Elizabeth Warren Criticizes Inclusion of Cryptocurrencies in 401k Plans

chest

Senator Elizabeth Warren publicly criticizes the US policy change allowing cryptocurrencies in retirement accounts.

user avatarLuis Flores

Elizabeth Warren Raises Concerns Over Crypto in 401k Plans

chest

Senator Elizabeth Warren raises concerns about the inclusion of cryptocurrencies in 401k plans, warning of potential financial risks for workers.

user avatarArif Mukhtar

XRP Market Structure Shifts as Whale Orders Increase

chest

Recent onchain data indicates a significant shift in the XRP market structure, driven by large participants rather than retail investors.

user avatarMaria Gutierrez

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.