BTCC / BTCC Square / Global Cryptocurrency /
North Korean Hackers Deploy Sophisticated Mac Malware to Target Crypto Projects

North Korean Hackers Deploy Sophisticated Mac Malware to Target Crypto Projects

Published:
2025-07-03 09:54:02
20
1
BTCCSquare news:

North Korean state-sponsored hackers have escalated their cyber warfare tactics with a new strain of malware specifically designed to compromise Apple devices. Dubbed 'NimDoor,' this malicious software bypasses macOS memory protections and targets cryptocurrency professionals through sophisticated social engineering schemes.

The attack vector begins with impersonation of trusted contacts on messaging platforms like Telegram. Attackers initiate fake Zoom meeting invitations via Google Meet links, then deliver a trojanized Zoom update file. When executed, the payload installs malware written in the Nim programming language - a deliberate choice that enhances cross-platform compatibility and evades detection.

NimDoor exhibits concerning capabilities, including credential theft from cryptocurrency wallets, browser password extraction, and Telegram data harvesting. The malware employs intelligent timing delays to avoid behavioral detection, demonstrating advanced operational security measures characteristic of nation-state actors.

Security analysts at Sentinel Labs confirm this campaign shatters the persistent myth of macOS immunity to malware. The targeting of cryptocurrency professionals reflects North Korea's continued focus on digital asset theft as a revenue stream, with Mac users now clearly in the crosshairs.

|Square

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users