The post MacSync Stealer Evolves on macOS with Apple-Notarized Swift Delivery, Targeting Cryptocurrency Wallets appeared on BitcoinEthereumNews.com. Security researchersThe post MacSync Stealer Evolves on macOS with Apple-Notarized Swift Delivery, Targeting Cryptocurrency Wallets appeared on BitcoinEthereumNews.com. Security researchers

MacSync Stealer Evolves on macOS with Apple-Notarized Swift Delivery, Targeting Cryptocurrency Wallets

2025/12/23 15:13
1 min di lettura
Per feedback o dubbi su questo contenuto, contattateci all'indirizzo crypto.news@mexc.com.

Security researchers report a notable evolution of the MacSync Stealer on macOS, leveraging Apple notarization and code signing to raise its trust level. The malware is distributed as a disk image named zk-call-messenger-installer-3.9.2-lts.dmg, masquerading as messaging or utility software.

Unlike earlier variants, the current sample omits manual terminal steps; it autonomously downloads and executes a built-in Swift helper from a remote server to harvest data, including credentials and cryptocurrency wallets information, with the developer team ID reported as GNJLS3UYZ4.

Analysis indicates the DMG is unusually large and contains decoy files to widen the window before detection. By abusing Apple’s signing framework, the threat actor strengthens its stealth, while decoys such as LibreOffice PDFs reduce user suspicion.

Mac cryptocurrency wallets and browser credentials are frequent targets for these information-stealing trojans. To mitigate risk, enable threat prevention and advanced threat control on endpoints, and configure Jamf to operate in blocking mode.

Source: https://en.coinotag.com/breakingnews/macsync-stealer-evolves-on-macos-with-apple-notarized-swift-delivery-targeting-cryptocurrency-wallets

Opportunità di mercato
Logo Intuition
Valore Intuition (TRUST)
$0,06464
$0,06464$0,06464
+0,63%
USD
Grafico dei prezzi in tempo reale di Intuition (TRUST)
Disclaimer: gli articoli ripubblicati su questo sito provengono da piattaforme pubbliche e sono forniti esclusivamente a scopo informativo. Non riflettono necessariamente le opinioni di MEXC. Tutti i diritti rimangono agli autori originali. Se ritieni che un contenuto violi i diritti di terze parti, contatta crypto.news@mexc.com per la rimozione. MEXC non fornisce alcuna garanzia in merito all'accuratezza, completezza o tempestività del contenuto e non è responsabile per eventuali azioni intraprese sulla base delle informazioni fornite. Il contenuto non costituisce consulenza finanziaria, legale o professionale di altro tipo, né deve essere considerato una raccomandazione o un'approvazione da parte di MEXC.

$30,000 in PRL + 15,000 USDT

$30,000 in PRL + 15,000 USDT$30,000 in PRL + 15,000 USDT

Deposit & trade PRL to boost your rewards!