Close Menu
Finance Pro
  • Home
  • Art Gallery
  • Art Investment
  • Art Stocks
  • Cryptocurrency
  • Finance
  • Investing in Art
  • Investments
Facebook X (Twitter) Instagram
Trending
  • GCB Bank cautions public against fraudulent “GCB Investments” platform
  • Eric Trump sees bitcoin hitting $1 million, praises China cryptocurrency role
  • Avalanche (AVAX) holds $24, but experts agree Mutuum Finance (MUTM) is the best Cryptocurrency to buy before 2026
  • Original drawings for National Gallery released including pool plans
  • All On advocates bold renewable energy investments to close Nigeria’s power gap
  • All On Chairman urges bold investments to bridge energy gap in Nigeria 
  • How Does Decentralization Shape Cryptocurrency Cybersecurity?
  • Giles Kime: ‘Why contemporary art should become a feature of everyday life’
  • Privacy Policy
  • Terms and Conditions
  • Get In Touch
Finance ProFinance Pro
  • Home
  • Art Gallery
  • Art Investment
  • Art Stocks
  • Cryptocurrency
  • Finance
  • Investing in Art
  • Investments
Finance Pro
Home»Cryptocurrency»Dangerous stealer can easily evade detection
Cryptocurrency

Dangerous stealer can easily evade detection

June 6, 20242 Mins Read


Our malware articles typically concern either Android or Windows, but Apple users occasionally have to deal with malicious software of their own. For instance, the Moonlock Lab cybersecurity team recently discovered a macOS malware strain that can easily evade detection.

As the researchers explain, the infection chain begins when a Mac user visits a site in search of pirated software. On the site, they might download a file titled CleanMyMacCrack.dmg, believing that the file is a cracked version of the Mac cleaning software, CleanMyMac. After launching that DMG file on their computer, a Mach-O file is executed, which downloads an AppleScript capable of stealing sensitive information from the Mac.

Here’s everything the malware can do once it infects a macOS computer:

  • Collects and stores the Mac owner’s username
  • Sets up temporary directories to store stolen data before exfiltration
  • Extracts browsing history, cookies, saved passwords, and more from browsers
  • Identifies and accesses common directories containing cryptocurrency wallets
  • Copies macOS keychain data, Apple Notes data, and cookies from Safari
  • Gathers general user information, system details, and metadata
  • Exfiltrates all the stolen data to threat actors

Moonlock claims that the macOS malware appears to be linked to well-known Russian-speaking threat actor Rodrigo4. The hacker was reportedly seen on the XSS underground forum recruiting other hackers to help distribute his stealer through SEO manipulation and ads.

Tech. Entertainment. Science. Your inbox.

Sign up for the most interesting tech & entertainment news out there.

By signing up, I agree to the Terms of Use and have reviewed the Privacy Notice.

If you want to avoid this macOS malware from infecting your computer, Moonlock recommends only downloading software from trusted sources, keeping your operating system and all of your apps updated, and using security software you trust.



Source link

Share. Facebook Twitter Pinterest LinkedIn Tumblr Email

Related Posts

Eric Trump sees bitcoin hitting $1 million, praises China cryptocurrency role

August 29, 2025 Cryptocurrency

Avalanche (AVAX) holds $24, but experts agree Mutuum Finance (MUTM) is the best Cryptocurrency to buy before 2026

August 29, 2025 Cryptocurrency

How Does Decentralization Shape Cryptocurrency Cybersecurity?

August 29, 2025 Cryptocurrency

Bitcoin Dips Below $111,000, PYTH Gains Nearly 84%

August 29, 2025 Cryptocurrency

Eric Trump hails China’s ‘hell of a power’ in cryptocurrency at Hong Kong’s bitcoin summit

August 29, 2025 Cryptocurrency

Russian man arrested on Koh Samui over Phuket cryptocurrency robbery

August 29, 2025 Cryptocurrency
Add A Comment
Leave A Reply Cancel Reply

Don't Miss

GCB Bank cautions public against fraudulent “GCB Investments” platform

August 29, 2025 Investments 2 Mins Read

GCB Bank PLC has issued a strong warning to its customers and the general public,…

Eric Trump sees bitcoin hitting $1 million, praises China cryptocurrency role

August 29, 2025

Avalanche (AVAX) holds $24, but experts agree Mutuum Finance (MUTM) is the best Cryptocurrency to buy before 2026

August 29, 2025

Original drawings for National Gallery released including pool plans

August 29, 2025
Our Picks

GCB Bank cautions public against fraudulent “GCB Investments” platform

August 29, 2025

Eric Trump sees bitcoin hitting $1 million, praises China cryptocurrency role

August 29, 2025

Avalanche (AVAX) holds $24, but experts agree Mutuum Finance (MUTM) is the best Cryptocurrency to buy before 2026

August 29, 2025

Original drawings for National Gallery released including pool plans

August 29, 2025
Our Picks

Bitcoin Dips Below $111,000, PYTH Gains Nearly 84%

August 29, 2025

Eric Trump hails China’s ‘hell of a power’ in cryptocurrency at Hong Kong’s bitcoin summit

August 29, 2025

Russian man arrested on Koh Samui over Phuket cryptocurrency robbery

August 29, 2025
Latest updates

GCB Bank cautions public against fraudulent “GCB Investments” platform

August 29, 2025

Eric Trump sees bitcoin hitting $1 million, praises China cryptocurrency role

August 29, 2025

Avalanche (AVAX) holds $24, but experts agree Mutuum Finance (MUTM) is the best Cryptocurrency to buy before 2026

August 29, 2025
Weekly Updates

Multiply Group signs landmark investment with CVC and PAI Partners to secure a controlling stake (67.91%) in Tendam, with the transaction expected to double Multiply's operational EBITDA post-consolidation – Yahoo Finance

February 25, 2025

Russian finance flows slump after US targets Vladimir Putin’s war machine

May 5, 2024

London Gallery Weekend 2024 | Our critics pick their top shows

May 29, 2024
  • Privacy Policy
  • Terms and Conditions
  • Get In Touch
© 2025 Finance Pro

Type above and press Enter to search. Press Esc to cancel.