• Trending
  • Comments
  • Latest
AI People joins Dubai’s innovation one — Declares war on the forgetting of humanity

AI People joins Dubai’s Innovation One program: Declares war on the forgetting of humanity

07/22/2025 - Updated On 07/23/2025
FBI nabs Nigerian ‘tech queen’ Sapphire Egemasi in multi-million dollar fraud scheme

FBI arrests Nigerian ‘tech queen’ Sapphire Egemasi in $1.3M heist targeting U.S. government

06/05/2025 - Updated On 06/17/2025
Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

06/09/2025 - Updated On 07/07/2025
Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

2
Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

2

Hello world!

1
New Malware Campaign exposes Investors to Crypto Wallet Exploit Risks

ModStealer Malware evades antivirus for weeks, loots crypto wallet keys

09/13/2025
XRP Ledger optimization has long been a core mission for Ripple developers

XRP Ledger unveils major optimization upgrade poised to boost network performance

09/13/2025
FTX Repayments at Risk: 400,000 Users Could Miss Out on $2.5B Without KYC Compliance

Sam Bankman-Fried appeals prison term, puts FTX fraud verdict under scrutiny

09/12/2025
  • Trending
  • Comments
  • Latest
AI People joins Dubai’s innovation one — Declares war on the forgetting of humanity

AI People joins Dubai’s Innovation One program: Declares war on the forgetting of humanity

07/22/2025 - Updated On 07/23/2025
FBI nabs Nigerian ‘tech queen’ Sapphire Egemasi in multi-million dollar fraud scheme

FBI arrests Nigerian ‘tech queen’ Sapphire Egemasi in $1.3M heist targeting U.S. government

06/05/2025 - Updated On 06/17/2025
Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

06/09/2025 - Updated On 07/07/2025
Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

2
Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

2

Hello world!

1
New Malware Campaign exposes Investors to Crypto Wallet Exploit Risks

ModStealer Malware evades antivirus for weeks, loots crypto wallet keys

09/13/2025
XRP Ledger optimization has long been a core mission for Ripple developers

XRP Ledger unveils major optimization upgrade poised to boost network performance

09/13/2025
FTX Repayments at Risk: 400,000 Users Could Miss Out on $2.5B Without KYC Compliance

Sam Bankman-Fried appeals prison term, puts FTX fraud verdict under scrutiny

09/12/2025
Saturday, September 13, 2025
  • Login
The Bit Gazette
  • Home
  • Crypto News
  • Expert Analysis
  • Finance
  • Tech
  • Sponsored
  • Press Release
  • Contact
No Result
View All Result
The Bit Gazette
No Result
View All Result
Home Crypto News

ModStealer Malware evades antivirus for weeks, loots crypto wallet keys

Cybercriminals are targeting developers and traders with stealth malware designed to drain digital assets from browser-based wallets.

by Victor Ohagwasi
3 hours ago
in Crypto News
Reading Time: 3 mins read
0
New Malware Campaign exposes Investors to Crypto Wallet Exploit Risks

ModStealer Malware evades antivirus for weeks, loots crypto wallet keys

Share on FacebookShare on Twitter

A new crypto wallet exploit campaign has surfaced, raising alarm among cybersecurity researchers and crypto investors alike. According to 9to5Mac, malware dubbed ModStealer has remained undetected by leading antivirus engines for nearly a month since first being uploaded to VirusTotal.

The malware is spreading through fake job recruiter ads targeting developers, a tactic increasingly used by cybercriminals to gain trust. Victims are tricked into executing a malicious JavaScript file written in NodeJS, which bypasses traditional signature-based defenses.

Unlike basic infostealers, ModStealer is equipped with advanced features including private key extraction, clipboard hijacking, remote code execution, and screen capture tools. It specifically targets 56 browser-based crypto wallet extensions, including Safari, posing a significant crypto wallet exploit risk to everyday traders.

“This isn’t just a Mac issue anymore,” — Mosyle, a security firm, said in a statement. “The cross-platform nature of ModStealer, combined with its stealth and Malware-as-a-Service distribution model, represents an evolving threat to developers, traders, and enterprises alike.”

How the malware gains control of devices

On macOS, ModStealer leverages Apple’s launchctl tool to gain persistence by embedding itself as a LaunchAgent. Once installed, it monitors user activity in real-time and sends stolen data to a remote server believed to be hosted in Finland but routed through German infrastructure.

Researchers warn that the malware is part of the broader Malware-as-a-Service (MaaS) ecosystem. Criminal affiliates can purchase ModStealer and deploy it without needing technical expertise, enabling large-scale crypto wallet exploit campaigns with minimal effort.

Jamf, a cybersecurity company, reported that infostealers now dominate Mac malware incidents, with a 28% surge recorded in 2025.

“The rise of MaaS tools like ModStealer means that sophisticated attacks are no longer limited to advanced hackers,” — Jamf researchers noted.

Phishing scams intensify financial losses

The ModStealer revelations come as phishing scams continue to plague digital asset holders. On Wednesday, blockchain analytics firm Lookonchain flagged a case where an investor lost $3.05 million in Tether (USDT) after unknowingly approving a malicious blockchain transaction.

The attacker exploited a common user oversight: verifying only the first and last characters of a wallet address, leaving the middle unchecked. This allowed the fraudster to redirect funds seamlessly, representing another form of crypto wallet exploit.

According to CertiK’s mid-2025 security report, crypto investors lost over $2.2 billion to hacks, scams, and breaches in the first half of the year. Of that total, wallet breaches alone accounted for $1.7 billion across 34 incidents, while phishing scams added $410 million across 132 separate attacks.

“These losses highlight a systemic vulnerability,” — CertiK analysts wrote. “Wallet compromises and phishing remain the most common forms of crypto wallet exploit, and investors must exercise heightened vigilance.”

What investors need to know

For crypto investors, the rise of ModStealer and large-scale phishing attacks demonstrates how digital assets remain prime targets for sophisticated criminal operations. The malware’s ability to bypass antivirus detection and its focus on wallet extensions amplify concerns over the security of browser-based wallets.

Industry experts argue that traditional security tools are insufficient against these evolving threats. Behavior-based detection, multi-factor authentication, and hardware wallets are increasingly recommended as defenses against crypto wallet exploit attempts.

Investor protection requires both technological safeguards and stronger awareness. As phishing scams and malware converge, the challenge for the crypto sector will be balancing innovation with resilience against cybercrime.

The broader lesson for investors is that convenience often comes with hidden risks. While browser-based wallets and simple transaction approvals make trading faster, they also expand the attack surface for cybercriminals. Security professionals caution that minimizing reliance on browser extensions and custodial wallets could reduce exposure to crypto wallet exploit vulnerabilities.

Regulators and exchanges are also under pressure to step up protections. Some jurisdictions are exploring stricter compliance rules for wallet providers, while major exchanges are investing in fraud detection and incident response systems. Whether these measures are enough remains to be seen, but the growing sophistication of crypto wallet exploit campaigns suggests the industry must act urgently.

Tags: blockchainCrypto theftCrypto Wallet ExploitCryptocurrencycybercrimecybersecuritydigital assetsInvestor ProtectionInvestorsMalware CampaignphishingPreventionRisk AwarenessSafe Practicessecurity breachsocial engineeringthreat intelligencevulnerabilityWallet Security
Share197Tweet123
Victor Ohagwasi

Victor Ohagwasi

Helping Busy Founders, Startups & Creatives Tell Their Stories — Visually, Verbally & Virtually | Growth Hacker | Content Strategist | Ghostwriter | Digital Marketer | Helping Brands Rank Higher & Speak Louder

  • Trending
  • Comments
  • Latest
AI People joins Dubai’s innovation one — Declares war on the forgetting of humanity

AI People joins Dubai’s Innovation One program: Declares war on the forgetting of humanity

07/22/2025 - Updated On 07/23/2025
FBI nabs Nigerian ‘tech queen’ Sapphire Egemasi in multi-million dollar fraud scheme

FBI arrests Nigerian ‘tech queen’ Sapphire Egemasi in $1.3M heist targeting U.S. government

06/05/2025 - Updated On 06/17/2025
Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

Deutsche Bank eyes stablecoin launch as tokenization wave hits European banking

06/09/2025 - Updated On 07/07/2025
Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

Polygon Discord Channel Hacked, Throws Crypto Community in Turmoil

2
Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

Bitcoin reclaims $107,000 as Iran-Israel ceasefire cools market tensions

2

Hello world!

1
New Malware Campaign exposes Investors to Crypto Wallet Exploit Risks

ModStealer Malware evades antivirus for weeks, loots crypto wallet keys

09/13/2025
XRP Ledger optimization has long been a core mission for Ripple developers

XRP Ledger unveils major optimization upgrade poised to boost network performance

09/13/2025
FTX Repayments at Risk: 400,000 Users Could Miss Out on $2.5B Without KYC Compliance

Sam Bankman-Fried appeals prison term, puts FTX fraud verdict under scrutiny

09/12/2025
No Result
View All Result
  • Home
  • Crypto News
  • Expert Analysis
  • Finance
  • Tech
  • Sponsored
  • Press Release
  • Contact

Copyright © 2025 - The Bit Gazette.

Are you sure want to unlock this post?
Unlock left : 0
Are you sure want to cancel subscription?