Binance Square

MacOS

2,533 views
9 Discussing
Anh_ba_Cong
--
See original
New Warning: XCSSET Malware Can Steal Crypto on macOSExperts from Microsoft Threat Intelligence have just discovered a new variant of the XCSSET malware capable of stealing cryptocurrency from wallets on Apple devices running macOS. This is a serious threat to users, especially developers and those storing crypto on Mac. How Does XCSSET Work? Malware first appeared in 2020 and has been known for its ability to:

New Warning: XCSSET Malware Can Steal Crypto on macOS

Experts from Microsoft Threat Intelligence have just discovered a new variant of the XCSSET malware capable of stealing cryptocurrency from wallets on Apple devices running macOS. This is a serious threat to users, especially developers and those storing crypto on Mac.
How Does XCSSET Work?
Malware
first appeared in 2020 and has been known for its ability to:
🚨 North Korean Hackers Target Crypto with New macOS Malware—Here’s What You Need to Know North Korean hackers are escalating their cyberattacks on the crypto industry with NimDoor, a sophisticated new malware targeting macOS systems. Disguised as routine software updates (like a "Zoom SDK installer"), this threat highlights the growing risks for Web3 and crypto startups. How the Attack Works: 1️⃣ Victims are lured via fake Telegram contacts or phishing emails. 2️⃣ A malicious AppleScript (hidden under layers of whitespace) downloads payloads from attacker-controlled servers. 3️⃣ The malware deploys persistent binaries (written in Nim, a rare programming language) to steal: Browser credentials (Chrome/Firefox) Telegram data Crypto wallet info 4️⃣ Stolen data is compressed and sent to North Korean servers. Why This Matters for Crypto: Evasion Tactics: Using less common languages like Nim, Go, or Rust helps hackers bypass traditional security tools. Lazarus Group Linked: North Korea’s cybercriminals have stolen $1.3B+ in crypto in 2024 alone (Chainalysis). Broader Threat: Fake job offers, impersonated companies, and malware-infected "updates" are becoming common entry points. How to Stay Safe: ✔️ Verify URLs/Senders – Double-check email domains and download sources. ✔️ Avoid Unsolicited Links – Especially for "urgent" software updates. ✔️ Use Hardware Wallets – Isolate crypto assets from daily-use devices. ⚠️ North Korea’s cyber-warfare is evolving—stay alert and secure your assets! #CryptoSecurity #NorthKorea #MacOS #Blockchain #Binance {spot}(BTCUSDT) {spot}(XRPUSDT)
🚨 North Korean Hackers Target Crypto with New macOS Malware—Here’s What You Need to Know
North Korean hackers are escalating their cyberattacks on the crypto industry with NimDoor, a sophisticated new malware targeting macOS systems. Disguised as routine software updates (like a "Zoom SDK installer"), this threat highlights the growing risks for Web3 and crypto startups.
How the Attack Works:
1️⃣ Victims are lured via fake Telegram contacts or phishing emails.
2️⃣ A malicious AppleScript (hidden under layers of whitespace) downloads payloads from attacker-controlled servers.
3️⃣ The malware deploys persistent binaries (written in Nim, a rare programming language) to steal:
Browser credentials (Chrome/Firefox)
Telegram data
Crypto wallet info
4️⃣ Stolen data is compressed and sent to North Korean servers.
Why This Matters for Crypto:
Evasion Tactics: Using less common languages like Nim, Go, or Rust helps hackers bypass traditional security tools.
Lazarus Group Linked: North Korea’s cybercriminals have stolen $1.3B+ in crypto in 2024 alone (Chainalysis).
Broader Threat: Fake job offers, impersonated companies, and malware-infected "updates" are becoming common entry points.
How to Stay Safe:
✔️ Verify URLs/Senders – Double-check email domains and download sources.
✔️ Avoid Unsolicited Links – Especially for "urgent" software updates.
✔️ Use Hardware Wallets – Isolate crypto assets from daily-use devices.
⚠️ North Korea’s cyber-warfare is evolving—stay alert and secure your assets!
#CryptoSecurity #NorthKorea #MacOS #Blockchain #Binance

🚨 Banshee Malware Threatens Over 100 Million Apple Users! 🚨 🚨 New MacOS Malware Banshee Evades Detection! 🚨 Researchers at Check Point have uncovered a dangerous macOS malware named Banshee, which has managed to slip past antivirus defenses for over two months by exploiting Apple’s encryption schemes. 😱 🔒 What's at Risk? Over 100 million Apple users could potentially be impacted! Apple’s built-in encryption isn’t enough to keep this one out. Forbes warns of the real danger this poses to Mac users. However, security expert Patrick Wardle suggests the threat might be more hype than hazard. 💡 Stay vigilant! Update your security and be cautious of suspicious activity. #CyberSecurity #MacOS #AIAgentFrenzy #AppleSecurity #DataProtection
🚨 Banshee Malware Threatens Over 100 Million Apple Users! 🚨

🚨 New MacOS Malware Banshee Evades Detection! 🚨

Researchers at Check Point have uncovered a dangerous macOS malware named Banshee, which has managed to slip past antivirus defenses for over two months by exploiting Apple’s encryption schemes. 😱

🔒 What's at Risk?

Over 100 million Apple users could potentially be impacted!

Apple’s built-in encryption isn’t enough to keep this one out.

Forbes warns of the real danger this poses to Mac users. However, security expert Patrick Wardle suggests the threat might be more hype than hazard.

💡 Stay vigilant! Update your security and be cautious of suspicious activity.

#CyberSecurity #MacOS #AIAgentFrenzy #AppleSecurity #DataProtection
🚨 Urgent Security Alert: North Korean Hackers Target Crypto Firms with New "NimDoor" macOS Malware A sophisticated new cyberattack campaign linked to North Korean hackers is infiltrating Apple devices at crypto companies through a stealthy malware called NimDoor. Here’s what security experts have uncovered: 🛑 How the Attack Works 1️⃣ Social Engineering Lure Hackers pose as trusted contacts on Telegram Victims are tricked into joining fake "Google Meet" calls (actually Zoom) 2️⃣ Malware Delivery Sent a malicious file disguised as a Zoom SDK update Installs NimDoor malware that bypasses macOS protections 3️⃣ Data Theft Phase Steals crypto wallet keys & browser credentials Targets Telegram data (extracts encrypted chats + decryption keys) Activates after 10-minute delay to evade detection 🔍 Why This Malware Is Dangerous Written in Nim language (rare for macOS attacks) Cross-platform capability (works on Windows/Linux too) Bypasses traditional security tools Linked to Lazarus Group (responsible for $3B+ in crypto hacks) 🛡️ How to Protect Yourself ✅ Verify all meeting links (double-check URLs) ✅ Never install unsolicited "updates" ✅ Use hardware wallets for crypto storage ✅ Enable 2FA on all accounts $BTC $ETH $SOL #CyberSecurity #Crypto #MacOS #HackAlert #NorthKorea 💬 Has your company faced similar phishing attempts? Share warnings to help others stay safe! {spot}(BTCUSDT)
🚨 Urgent Security Alert: North Korean Hackers Target Crypto Firms with New "NimDoor" macOS Malware
A sophisticated new cyberattack campaign linked to North Korean hackers is infiltrating Apple devices at crypto companies through a stealthy malware called NimDoor. Here’s what security experts have uncovered:
🛑 How the Attack Works
1️⃣ Social Engineering Lure
Hackers pose as trusted contacts on Telegram
Victims are tricked into joining fake "Google Meet" calls (actually Zoom)
2️⃣ Malware Delivery
Sent a malicious file disguised as a Zoom SDK update
Installs NimDoor malware that bypasses macOS protections
3️⃣ Data Theft Phase
Steals crypto wallet keys & browser credentials
Targets Telegram data (extracts encrypted chats + decryption keys)
Activates after 10-minute delay to evade detection
🔍 Why This Malware Is Dangerous
Written in Nim language (rare for macOS attacks)
Cross-platform capability (works on Windows/Linux too)
Bypasses traditional security tools
Linked to Lazarus Group (responsible for $3B+ in crypto hacks)
🛡️ How to Protect Yourself
✅ Verify all meeting links (double-check URLs)
✅ Never install unsolicited "updates"
✅ Use hardware wallets for crypto storage
✅ Enable 2FA on all accounts
$BTC $ETH $SOL
#CyberSecurity #Crypto #MacOS #HackAlert #NorthKorea
💬 Has your company faced similar phishing attempts?
Share warnings to help others stay safe!
Login to explore more contents
Explore the latest crypto news
⚡️ Be a part of the latests discussions in crypto
💬 Interact with your favorite creators
👍 Enjoy content that interests you
Email / Phone number