Wednesday, September 17, 2025
TraderNews
No Result
View All Result
No Result
View All Result
TraderNews
No Result
View All Result
Home Cryptocurrency & Blockchain Bitcoin

This Virus Is Targeting Browser Wallets

admin by admin
September 12, 2025
in Bitcoin
0
This Virus Is Targeting Browser Wallets
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter



A new strain of malware purpose-built to steal crypto wallet data is slipping past every major antivirus engine, according to Apple device security firm Mosyle.

Dubbed ModStealer, the infostealer has been live for nearly a month without detection by virus scanners. Mosyle researchers say the malware is being distributed through malicious recruiter ads targeting developers and uses a heavily obfuscated NodeJS script to bypass signature-based defenses.

That means the malware’s code has been scrambled and layered with tricks that make it unreadable to signature-based antivirus tools. Since these defenses rely on spotting recognizable code “patterns,” the obfuscation hides them, allowing the script to execute without detection.

In practice, this lets attackers slip malicious instructions into a system while bypassing traditional security scans that would usually catch simpler, unaltered code.

Unlike most Mac-focused malware, ModStealer is cross-platform, hitting Windows and Linux environments as well. Its primary mission is that of data exfiltration, and the code is presumed to include pre-loaded instructions to target 56 browser wallet extensions designed to extract private keys, credentials, and certificates.

The malware also supports clipboard hijacking, screen capture, and remote code execution, giving attackers the ability to seize near-total control of infected devices. On macOS, persistence is achieved via Apple’s launching tool, embedding itself as a LaunchAgent.

Mosyle states that the build aligns with the profile of “Malware-as-a-Service,” where developers sell ready-made tools to affiliates with limited technical expertise. The model has driven a surge in infostealers this year, with Jamf reporting a 28% rise in 2025 alone.

The discovery comes on the heels of recent npm-focused attacks where malicious packages like colortoolsv2 and mimelib2 used Ethereum smart contracts to conceal second-stage malware. In both cases, attackers leveraged obfuscation and trusted developer infrastructure to bypass detection.

ModStealer extends this pattern beyond package repositories, showing how cybercriminals are escalating their techniques across ecosystems to compromise developer environments and directly target crypto wallets.





Source link

Previous Post

SOL/BTC Ratio Reaches Highest Level Since LIBRA Scandal in February

Next Post

How the lawsuit strengthened XRP’s narrative

admin

admin

Related Posts

BTC Record Fourth Consecutive Day of Inflows
Bitcoin

BTC Record Fourth Consecutive Day of Inflows

by admin
September 12, 2025
Prices Top 50-Day SMA, Dollar Index Steady, and Limited Downside for 10-Year Treasury Yields
Bitcoin

Prices Top 50-Day SMA, Dollar Index Steady, and Limited Downside for 10-Year Treasury Yields

by admin
September 12, 2025
World Liberty Financial (WLFI) Token Holds Steady as Community Backs Buyback-and-Burn Plan
Bitcoin

World Liberty Financial (WLFI) Token Holds Steady as Community Backs Buyback-and-Burn Plan

by admin
September 12, 2025
Bitcoin

SwissBorg’s SOL Earn Wallet Exploited for $41.5M

by admin
September 10, 2025
Crypto Exchange Gemini Boosts IPO Price Range to $24-$26 Per Share
Bitcoin

Crypto Exchange Gemini Boosts IPO Price Range to $24-$26 Per Share

by admin
September 10, 2025
Next Post
How the lawsuit strengthened XRP’s narrative

How the lawsuit strengthened XRP’s narrative

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Premium Content

Eric Trump’s American Bitcoin Pumps and Dumps on Nasdaq Launch

Eric Trump’s American Bitcoin Pumps and Dumps on Nasdaq Launch

September 6, 2025
Trump-linked WLFI’s 40% decline causes millions in losses for crypto whales

Trump-linked WLFI’s 40% decline causes millions in losses for crypto whales

September 5, 2025

Kenvue fights back against Tylenol safety concerns as its stock tumbles

September 6, 2025

Browse by Category

  • Altcoins (Ethereum, Solana, etc.)
  • Bitcoin
  • Bonds & Fixed Income
  • Corporate News
  • DeFi & Web3
  • Foreign Exchange (Forex)
  • Growth Investing
  • IPOs & Listings
  • Mergers & Acquisitions
  • Passive vs Active Investing
  • Portfolio Management
  • Quarterly Earnings Reports
  • Stock Market
My Blog

TraderNews is an automated news hub for investors and traders. We aggregate headlines, filings, and market stories from trusted sources and organize them into Markets, Companies & Earnings, Cryptocurrency, and Investing Strategies updated all day, every day.

Categories

  • Altcoins (Ethereum, Solana, etc.)
  • Bitcoin
  • Bonds & Fixed Income
  • Corporate News
  • DeFi & Web3
  • Foreign Exchange (Forex)
  • Growth Investing
  • IPOs & Listings
  • Mergers & Acquisitions
  • Passive vs Active Investing
  • Portfolio Management
  • Quarterly Earnings Reports
  • Stock Market

Recent Posts

  • Ripley PR launches Adventure PR to amplify adventure travel, RV and outdoor brands
  • Lancaster Resources Appoints Veteran Explorer Ross Brown as
  • Huize Holding Limited Reports Second Quarter 2025 Unaudited

© 2025 TraderNews

No Result
View All Result

© 2025 TraderNews

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?