North Korean Hackers Use NimDoor macOS Malware to Target Web3, Crypto Platforms

Share via:



A cybersecurity firm has uncovered a North Korean hacking campaign targeting macOS systems within Web3 and cryptocurrency organizations. The hackers are employing “NimDoor” malware, delivered through social engineering tactics on chat platforms.

The attack involves malicious bash scripts disguised as updates or other files. These scripts are designed to harvest sensitive data, including browser information, iCloud Keychain credentials, and Telegram user data. This information is then exfiltrated to the attackers.

The techniques employed are consistent with other known North Korean hacking activities, suggesting a continued focus on exploiting the growing and lucrative Web3 and crypto sectors. The discovery highlights the need for heightened security awareness and robust protection measures among individuals and organizations operating in these industries, particularly those utilizing macOS devices.



Source link

Disclaimer

We strive to uphold the highest ethical standards in all of our reporting and coverage. We StartupNews.fyi want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.

Popular

More Like this

North Korean Hackers Use NimDoor macOS Malware to Target Web3, Crypto Platforms



A cybersecurity firm has uncovered a North Korean hacking campaign targeting macOS systems within Web3 and cryptocurrency organizations. The hackers are employing “NimDoor” malware, delivered through social engineering tactics on chat platforms.

The attack involves malicious bash scripts disguised as updates or other files. These scripts are designed to harvest sensitive data, including browser information, iCloud Keychain credentials, and Telegram user data. This information is then exfiltrated to the attackers.

The techniques employed are consistent with other known North Korean hacking activities, suggesting a continued focus on exploiting the growing and lucrative Web3 and crypto sectors. The discovery highlights the need for heightened security awareness and robust protection measures among individuals and organizations operating in these industries, particularly those utilizing macOS devices.



Source link

Disclaimer

We strive to uphold the highest ethical standards in all of our reporting and coverage. We StartupNews.fyi want to be transparent with our readers about any potential conflicts of interest that may arise in our work. It’s possible that some of the investors we feature may have connections to other businesses, including competitors or companies we write about. However, we want to assure our readers that this will not have any impact on the integrity or impartiality of our reporting. We are committed to delivering accurate, unbiased news and information to our audience, and we will continue to uphold our ethics and principles in all of our work. Thank you for your trust and support.

Website Upgradation is going on for any glitch kindly connect at office@startupnews.fyi

More like this

IEEE Spectrum’s Top Biomedical Stories of 2025

IEEE Spectrum’s most popular biomedical stories of the last...

Industry leaders press govt for area-specific fixes to Bengaluru’s...

IT companies, startups, and global capability centres (GCCs)...

Apple releases new Powerbeats Pro 2 firmware update

Powerbeats Pro 2 just got new firmware from...

Popular