Mac users warned over malware ‘Cthulhu’ that steals crypto wallets
Apple Mac users are being warned about a new strain of malware called “Cthulhu Stealer,” which can steal their personal information and target crypto wallets.
“For years, there has been a general belief in the Zeitgeist that macOS systems are immune to malware,” said cybersecurity firm Cado Security on Aug. 22.
“While MacOS has a reputation for being secure, macOS malware has been trending up in recent years.”
“Cthulhu Stealer” appears as an Apple disk image (DMG) and disguises itself as legitimate software like CleanMyMac and Adobe GenP.
When users open the file, the macOS command-line tool for running AppleScript and JavaScript is used to prompt them for their password.
Once this is entered, a second prompt will appear for the password to the popular Ethereum wallet, MetaMask. It also targets other popular crypto wallets , including those from Coinbase, Wasabi, Electrum, Atomic , Binance, and Blockchain Wallet.
The malware stores the stolen data in text files before fingerprinting the victim’s system to gather data such as IP address and operating system version.
Cthulhu Stealer ‘checking’ for installed crypto wallets. Source: Cado Security
“The main functionality of Cthulhu Stealer is to steal credentials and cryptocurrency wallets from various stores, including game accounts,” explained Cado researcher Tara Gould.
Cthulhu Stealer is very similar to Atomic Stealer, malware that was identified in 2023 targeting Apple computers. This indicates that the developer of Cthulhu Stealer “probably took Atomic Stealer and modified the code,” added Gould.
The malware was being rented out to affiliates for $500 per month using the Telegram messaging platform, with the main developer sharing profits from successful deployments.
However, the scammers behind the malware are said to be no longer active, following disputes over payments that have led to accusations of an exit scam by affiliates.
On Aug. 23, Cointelegraph reported that the AMOS malware, which also targets Mac users, can now clone Ledger Live software.
Related: Mac users beware: AMOS malware clones wallet apps and comes for your crypto
Apple has recently acknowledged the increasing threat of malware targeting its operating systems. On Aug. 6, the tech giant announced an update to its next-generation macOS version that makes it a little more difficult for users to override Gatekeeper protections that ensure only trusted applications are allowed to run on the system.
In May, Telegram played down the severity of an exploit that allowed researchers to gain access to macOS camera systems, stating that it had more to do with Apple’s permission security than the messaging platform.
Magazine: Jack Dorsey’s ‘marketplace of algorithms’ could fix social media… so why hasn’t it?
Disclaimer: The content of this article solely reflects the author's opinion and does not represent the platform in any capacity. This article is not intended to serve as a reference for making investment decisions.
You may also like
Florida teens arrested in connection with a kidnapping and theft of $4M in crypto
Share link:In this post: Three Florida teens have been accused of kidnapping a man at gunpoint and forcing him to transfer $4 million worth of digital assets to them. The teens kidnapped the victim from Las Vegas and threatened to kill him and his father if he didn’t cooperate. Law enforcement agencies across the globe are now warning individuals with substantial crypto holdings to be cautious amid a rise in kidnappings.
UK icons slam AI ‘theft’ in fiery plea to Starmer before key vote
Share link:In this post: Over 400 UK artists urged PM, Keir Starmer, to strengthen copyright laws ahead of an AI legislation vote. UK government’s proposed “opt-out” rule for AI training on copyrighted content faces strong backlash. Hayao Miyazaki and others condemn AI-generated art, fueling copyright debates and legal challenges.
Americans have wiped out $3 trillion in savings in the past 3 years, mostly from stimulus checks
Share link:In this post: Americans have drained $3 trillion in savings since 2021, with excess savings now at negative $900 billion. The US savings rate dropped to 3.9% in March, below pre-pandemic levels of 5-6%. Consumer spending rose 0.7% in March, but GDP still shrank by 0.3% due to soaring imports.

Banking the unbanked, but this time for real?
Trending news
MoreCrypto prices
More








