Slow Fog: The macOS malware "MacSync Stealer" is active and highly destructive

By: rootdata|2026/04/22 18:48:50
0
Share
copy

According to monitoring by the blockchain security firm SlowMist, MistEye has received threat intelligence from the community indicating that a malware named "MacSync Stealer" (v1.1.2) is active and highly destructive. This malware targets macOS users, stealing sensitive data including cryptocurrency wallets, browser credentials, system keychains, and infrastructure keys (SSH/AWS/K8s).

The malware uses a spoofed AppleScript system dialog for phishing and displays fake error messages stating "unsupported" after data leakage. It has immediately synchronized this IOC (Indicator of Compromise) to clients. Do not execute unverified macOS scripts and remain highly vigilant against unexpected system password prompts. If an attack is suspected, immediate remediation is required: change all infrastructure credentials (SSH/AWS/K8s), invalidate any exposed keychains, and quickly migrate cryptocurrency assets to a secure wallet.

You may also like

Cursor, why did you get on Musk's spaceship?

SpaceX set a record with its IPO, spending a staggering $60 billion to acquire the popular AI programming unicorn Cursor just four days later. Musk is using the ultimate puzzle of "super computing power + top coding engine" to propel the market value skyrocketing, surpassing Amazon in one fell swoop...

Morning Report | DeepSeek completes over $7 billion in financing, with a valuation exceeding $50 billion; Musk's personal wealth has surpassed the total market value of Bitcoin

Overview of Important Market Events on June 16

SharpLink CEO: How to understand that Ethereum developers have just surpassed 1 million?

The most important question in the cryptocurrency industry is not which chain is the fastest, but rather where top builders choose to build in the long term. Ethereum has just surpassed one million cumulative developers; what does this number mean?

Morning Report | MiCA grace period expires on July 1; Kalshi's trading volume in the first week of the World Cup breaks $5.1 billion, setting a record

Overview of Important Market Events on June 15

The foundation of SpaceX's trillion-dollar valuation: Who is dividing Musk's annual capital expenditure of tens of billions?

SpaceX Supply Chain Revealed: The Invisible Gold Mine Behind the Trillion-Dollar "Space Dream," from Nvidia's Computing Power Monopoly to China's Sole Supplier of Special Materials, these overlooked water-selling talents are the true wealth creation engine.

How to exit after asset tokenization?

Currently, three models have emerged, aimed at providing instant exit routes for tokenized real-world assets. Their differences lie in: who holds the funds required for exit, how efficiently the funds operate, and the extent to which this model can be scaled across different asset types.

Popular coins

Latest Crypto News

Read more
iconiconiconiconiconiconicon
Customer Support:@weikecs
Business Cooperation:@weikecs
Quant Trading & MM:bd@weex.com
VIP Program:support@weex.com