Security

Fake Crypto Platform Distributes North Korean MacOS Trojan

It has been a while since a new strain of malware was linked to cryptocurrencies. In the case of this particular Trojan, it was hosted on a fake cryptocurrency trading platform.

The Trojan was originally identified earlier this week by Dinesh Devadoss, a malware researcher.

A new MacOS Malware Surfaces

It has not been officially named at this point, but the payload has become apparent.

The Trojan distributes the mach-O executable file, which will allow it to pose serious problems to any computer it infects.

The worrisome part is how there have not been any public detections of the MacOS malware to date, mainly due to there being no reports.

What is even more remarkable is how this MacOS malware is linked to Lazarus, a North Korean hacking collective.

Related Post

Although it is not officially confirmed those appear to be the preliminary findings of this research 

As far as the distribution of the malware is concerned, it was initially discovered on the UnionCryptoTrader platform.

This platform masks itself as a cryptocurrency trading platform, even though it was clearly designed to distribute this MacOS malware first and foremost.

Researchers also confirmed this malware comes with a service to contact a command-and-control service to potentially download additional malicious payloads.

No payload has been actively identified as of yet but that situation can change at any given time.

For now, it is best for MacOS users to steer away from dodgy crypto-related platforms.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Velocity Ticket Debuts As The AI-Powered Invoicing Tool Every Service Business Needs in 2026

Velocity Ticket is trying to fix a major gap in businesses, and the approach it…

2 days ago

Axelar Confirms $4.67M Exploit on Secret Network Bridge, Core Protocol Remains Unaffected

Axelar is moving fast to contain damage after identifying a security incident that has resulted…

2 days ago

Sui Synthetic Dollar suiUSDe Gets Its Own Website

suiUSDe now has a dedicated landing page. The token, officially the eSui Dollar, comes out…

2 days ago

Ventuals Winds Down HIP-3 DEX, vHYPE Withdrawals Now Live For All Holders

Ventuals has fully wound down its HIP-3 DEX, and vHYPE withdrawals are now open. The…

2 days ago

Avalanche Launches Payments Collective With Franklin Templeton And 25 Others

Avalanche has launched the Avalanche Payments Collective, bringing together 28 organizations spanning nearly every layer…

4 days ago

ASTER Whale Reopens 5x Long Days After Getting Fully Liquidated On The Same Token

A wallet tracked as 0x5f91 just opened a fresh 5x leveraged long on ASTER, putting…

4 days ago