The post New Mac Malware ‘MacSync’ Stealing Crypto Wallets appeared on BitcoinEthereumNews.com. The modus operandi  Other MacOS-related incidents  Blockchain securityThe post New Mac Malware ‘MacSync’ Stealing Crypto Wallets appeared on BitcoinEthereumNews.com. The modus operandi  Other MacOS-related incidents  Blockchain security

New Mac Malware ‘MacSync’ Stealing Crypto Wallets

2026/04/23 02:42
2분 읽기
이 콘텐츠에 대한 의견이나 우려 사항이 있으시면 crypto.news@mexc.com으로 연락주시기 바랍니다
  • The modus operandi 
  • Other MacOS-related incidents 

Blockchain security firm SlowMist has warned about a highly destructive new macOS infostealer dubbed “MacSync Stealer” (v1.1.2). 

The active malware campaign is specifically targeting Apple users to drain cryptocurrency wallets and exfiltrate highly sensitive infrastructure credentials.

The modus operandi 

Deceptive social engineering tactics are used by malicious actors to bypass user defenses. 

Trader Who Predicted 700% XRP Rally is ‘Cautiously Optimistic’ Again; Strategy CEO Issues Bitcoin Teaser as BTC Price Unlocks $96,600 Outlook; Dogecoin Targets 34% Upside with Zero ETF Inflows – Morning Crypto Report

Brian Armstrong: New Satoshi Doc is the Best Yet

The malware uses fake AppleScript system dialogs that mimic legitimate macOS password prompts to phish for the user’s login credentials.

The malware silently exfiltrates their data in the background once the victim takes the bait. MacSync Stealer displays a fake “not supported” error message immediately after the data extraction is complete in order not to raise any suspicion. The trick makes it seem like the application simply failed to launch.

You Might Also Like

Apart from cryptocurrency users, the malware is targeting browser credentials, macOS system Keychains, critical infrastructure keys, including SSH, AWS, and Kubernetes (K8s) credentials

Other MacOS-related incidents 

This is not an isolated incident. Bybit’s security team has just uncovered a malware campaign targeting macOS users searching for Claude Code.

Recently, Microsoft Threat Intelligence exposed a highly targeted macOS campaign orchestrated by “Sapphire Sleet,” a known North Korean state-sponsored threat actor. Sapphire Sleet uses advanced social engineering to impersonate legitimate macOS software updates and steal cryptocurrency wallets. 

One should also mention the “Infinity Stealer” malware, which demonstrated how Windows-centric attack methods are being adapted for macOS. It uses the “ClickFix” technique to present victims with a fake CAPTCHA page. Cybersecurity firm SOC Prime has also identified “MioLab,” which is a commercially distributed macOS infostealer explicitly built to target high-value victims, including crypto holders. 

Source: https://u.today/new-mac-malware-macsync-stealing-crypto-wallets

시장 기회
Notcoin 로고
Notcoin 가격(NOT)
$0,0004083
$0,0004083$0,0004083
-1,01%
USD
Notcoin (NOT) 실시간 가격 차트
면책 조항: 본 사이트에 재게시된 글들은 공개 플랫폼에서 가져온 것으로 정보 제공 목적으로만 제공됩니다. 이는 반드시 MEXC의 견해를 반영하는 것은 아닙니다. 모든 권리는 원저자에게 있습니다. 제3자의 권리를 침해하는 콘텐츠가 있다고 판단될 경우, crypto.news@mexc.com으로 연락하여 삭제 요청을 해주시기 바랍니다. MEXC는 콘텐츠의 정확성, 완전성 또는 시의적절성에 대해 어떠한 보증도 하지 않으며, 제공된 정보에 기반하여 취해진 어떠한 조치에 대해서도 책임을 지지 않습니다. 본 콘텐츠는 금융, 법률 또는 기타 전문적인 조언을 구성하지 않으며, MEXC의 추천이나 보증으로 간주되어서는 안 됩니다.

USD1 Genesis: 0 Fees + 12% APR

USD1 Genesis: 0 Fees + 12% APRUSD1 Genesis: 0 Fees + 12% APR

New users: stake for up to 600% APR. Limited time!