• Dapps:16.23K
  • Blockchains:78
  • Active users:66.47M
  • 30d volume:$303.26B
  • 30d transactions:$879.24M

New Cthulhu Stealer Malware Threatens Mac Users, Including Crypto Wallets

user avatar

by Giorgi Kostiuk

2 years ago


  1. How Cthulhu Stealer Works?
  2. Similarities with Other Malware
  3. Current Situation with Cthulhu Stealer

  4. A new strain of malware named Cthulhu Stealer is targeting Apple Mac users, capable of extracting personal information and accessing crypto wallets.

    How Cthulhu Stealer Works?

    The new malware appears as an Apple Disk image, disguising itself as legitimate applications like CleanMyMac or Adobe GenP. Users who open the malicious file are prompted to enter their system’s password, followed by a prompt for their MetaMask wallet password. It also targets other popular wallets installed on the device, including Coinbase, Wasabi, Electrum, Binance, Atomic, and Blockchain Wallet. The malware gathers information such as the device’s IP address and operating system, storing the stolen data in text files.

    Similarities with Other Malware

    Cybersecurity firm Cado Security identified similarities between Cthulhu Stealer and a malware called Atomic Stealer discovered in 2023. Both are designed to steal crypto wallet information, browser credentials, and keychain information.

    The functionality and features of Cthulhu Stealer are very similar to Atomic Stealer, indicating the developer of Cthulhu Stealer probably took Atomic Stealer and modified the code.a researcher from Cado Security

    Current Situation with Cthulhu Stealer

    Cthulhu Stealer is being rented out on Telegram to affiliates for $500 per month. The lead developer also takes a percentage of the profits from every successful deployment. However, the scammers behind the malware seem to have become inactive due to disputes over payments, leading to accusations of an exit scam by affiliates.

    The new Cthulhu Stealer malware poses a significant threat to Apple Mac users by stealing personal information and targeting popular crypto wallets. Users are advised to be cautious of suspicious files and not to enter their passwords on dubious sites.

0

Rewards

chest
chest
chest
chest

More rewards

Discover enhanced rewards on our social media.

chest

Other news

SUI Group Increases Loan to Bluefin, Strengthening DeFi Ties

chest

SUI Group Holdings Limited has expanded its lending agreement with Bluefin, increasing the total loan to 6 million SUI to support Bluewater Labs' acquisition of Suilend.

user avatarLuis Flores

Sui Seal MPC Introduces Hidden Bids for Enhanced AI Trading Security

chest

Mysten Labs has introduced a feature in the Sui Seal MPC system that enables hidden bids for AI trading, enhancing security and reducing risks of frontrunning.

user avatarMaria Gutierrez

Mysten Labs Introduces Sui Seal MPC for Secure AI Transactions

chest

Mysten Labs has launched Sui Seal MPC on the Sui mainnet, enabling autonomous AI agents to execute onchain transactions securely without holding private keys.

user avatarArif Mukhtar

Chainlink Collaborates with Project Pangea to Revolutionize Cross-Border FX Settlements

chest

Chainlink partners with Project Pangea to enhance cross-border FX settlements, aiming to reduce settlement times from T2 to T0 using stablecoins by mid-2027.

user avatarDavid Robinson

SecondFi Suspends Services Due to Critical Wallet Flaw

chest

SecondFi has suspended its services due to a critical vulnerability in its wallet generation software that led to the theft of ADA.

user avatarAndrew Smith

Morgan Stanley's Proposed Solana Trust Filing Sparks Market Interest

chest

Morgan Stanley has amended its S1A filing for a proposed spot Solana Trust, focusing on fees and staking plans.

user avatarJacob Williams

Important disclaimer: The information presented on the Dapp.Expert portal is intended solely for informational purposes and does not constitute an investment recommendation or a guide to action in the field of cryptocurrencies. The Dapp.Expert team is not responsible for any potential losses or missed profits associated with the use of materials published on the site. Before making investment decisions in cryptocurrencies, we recommend consulting a qualified financial advisor.