BTCC / BTCC Square / Global Cryptocurrency /
New ’ModStealer’ Malware Evades Detection to Target Crypto Wallets Across Platforms

New ’ModStealer’ Malware Evades Detection to Target Crypto Wallets Across Platforms

Published:
2025-09-12 07:27:02
15
1
BTCCSquare news:

A sophisticated malware strain named ModStealer has been operating undetected for nearly a month, bypassing all major antivirus engines. The threat, identified by Apple security firm Mosyle, specifically targets browser-based cryptocurrency wallets through obfuscated NodeJS scripts distributed via fake recruiter ads.

ModStealer employs advanced code scrambling techniques to evade signature-based detection systems. Its cross-platform capabilities allow it to infect Windows, Linux, and macOS devices equally. The malware focuses on data exfiltration, with built-in functionality to target 56 browser wallet extensions for private keys, credentials, and certificates.

Beyond wallet theft, ModStealer enables clipboard hijacking, screen capture, and remote code execution - granting attackers near-total control of compromised devices. The malware's persistence mechanisms on macOS suggest long-term infiltration capabilities.

|Square

Get the BTCC app to start your crypto journey

Get started today Scan to join our 100M+ users