🚨 New macOS malware "Realst" targets cryptocurrency wallets 🚨
Fake blockchain games like Brawl Earth & WildWorld distribute malware on social media. Realst steals data from web browsers & crypto wallets, sending it back to threat actors. Over 16 variants of Realst discovered, actively evolving. Beware of Discord & "verified" Twitter accounts promoting games. Stay vigilant, protect your crypto!
The article discusses a new Mac malware named 'Realst' that is being used in a massive campaign targeting Apple computers. Some of its latest variants include support for macOS 14 Sonoma, which is still in development.
Key Points:
The malware is distributed to both Windows and macOS users in the form of fake blockchain games.
These games are promoted on social media, with the threat actors using direct messages to share access codes required to download the fake game client from associated websites.
The game installers infect devices with information-stealing malware, such as RedLine Stealer on Windows and Realst on macOS.
This type of malware will steal data from the victim's web browsers and cryptocurrency wallet apps and send them back to the threat actors.
SentinelOne analyzed 59 Mach-O samples of the Realst malware and found several distinct differences. This allowed the researchers to identify 16 variants of the macOS malware, a sign of active and rapid development.
The malware targets Firefox, Chrome, Opera, Brave, Vivaldi, and the Telegram app, but none of the analyzed Realst samples target Safari.
The 16 distinct variants are categorized into four main families based on their traits, namely A, B, C, and D.
Roughly 30% of the samples from families A, B, and D contain strings that target the upcoming macOS 14 Sonoma.
MacOS users are advised to be cautious with blockchain games, as those distributing Realst use Discord channels and "verified" Twitter accounts to create a false image of legitimacy.
The main goal is likely to steal crypto wallets and the funds within them, leading to costly attacks.
This summary is based on an article from BleepingComputer titled 'New Realst macOS malware steals your cryptocurrency wallets'. You can find it here: https://www.bleepingcomputer.com/news/security/new-realst-macos-malware-steals-your-cryptocurrency-wallets/
#CyberSecurity #Malware #Cryptocurrency #MacOSMalware #Realst #CyberThreat #Cryptowallets #SecurityAlert