Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

Location-Based Gaming NFTs: How GPS and Blockchain Are Changing the Way We Play

May 2, 2026

ZachXBT Exposes US Law Firm Gerstein Harrow’s $71M Grab of Stolen Lazarus Funds

May 2, 2026

Crypto hack losses top $630M in April, highest since February 2025

May 2, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»Cthulhu Stealer Malware Targets macOS With Deceptive Tactics
Cthulhu Stealer Malware Targets macOS With Deceptive Tactics
Security

Cthulhu Stealer Malware Targets macOS With Deceptive Tactics

March 4, 2026No Comments2 Mins Read

A newly discovered malware, Cthulhu Stealer, has been observed targeting macOS users, marking another significant cybersecurity threat to Apple’s operating system. 

The tool, identified by Cado Security, operates as a malware-as-a-service (MaaS) and leverages Apple disk images (DMG) to disguise itself as legitimate software.

How Cthulhu Stealer Works

The Cthulhu Stealer primarily focuses on stealing sensitive information, including credentials and cryptocurrency wallets, from its victims. Once a user mounts the DMG and opens the disguised file, the malware uses osascript, a macOS command-line tool, to prompt the user for their system and MetaMask passwords. 

The stolen data is stored in a directory and compressed into a zip file for exfiltration to the malware’s command-and-control (C2) server. The stolen data includes:

  • Keychain passwords

  • MetaMask and Coinbase wallets

  • Game account details like Battle.net

  • Browser cookies and extensions

Cthulhu Stealer mimics well-known software, such as CleanMyMac, Adobe GenP and a typo-laden “Grand Theft Auto IV,” to trick users into installing it. 

Similarities to Atomic Stealer and Developer Disputes

Cado Security has noted substantial similarities between Cthulhu Stealer and the earlier Atomic Stealer, indicating that Cthulhu Stealer may be a modified version of the latter. Both malware variants utilize similar password prompts and data collection techniques, suggesting they may share a developer.

Read more on cybersecurity trends affecting macOS users: Fake Meeting Software Spreads macOS Infostealer

The operators behind Cthulhu Stealer, known as the “Cthulhu Team,” rent out the malware to affiliates for $500 per month. However, disputes over payments have reportedly led to accusations of fraud within the group, resulting in the main developer being banned from a popular malware marketplace.

See also  DeFi exploiter targets lending protocols with oracle tricks

Protecting macOS Against Cthulhu Stealer

According to Cado Security, the discovery underscores the evolving threat landscape for macOS users. 

“While macOS has long been considered a secure system, the existence of malware targeting Mac users remains an increasing security concern,” the company wrote.

To protect against similar threats like Cthulhu Stealer, Cado Security recommends several precautions for macOS users. These include:

  • Downloading software only from trusted sources, such as the Apple App Store or the official websites of reputable developers

  • Enabling macOS’s built-in security features, such as Gatekeeper, to prevent the installation of unverified apps

  • Keeping your system and applications up to date with the latest security patches

  • Using reputable antivirus software for an additional layer of protection

Image credit: Farknot Architect / Shutterstock.com

Source link

Cthulhu Deceptive macOS Malware Stealer Tactics Targets

Related Posts

Crypto hack losses top $630M in April, highest since February 2025

May 2, 2026

US seized $500M in Iranian crypto assets, Treasury secretary says

May 2, 2026

Wasabi Protocol drained for $4.5 million in apparent admin key compromise

May 2, 2026

Tax season fuels rise in crypto wallet scams, Kaspersky reports

May 2, 2026
Top Posts

Economist Steve Hanke Says US Is Losing Iran War and Is Financially Insolvent – Featured Bitcoin News

March 29, 2026

Bitcoin ETF Rally Pauses as $228 Million Outflow Hits Market

March 6, 2026

Asset-Light Car Rental Booking Platforms Are Challenging Traditional Fleet Models in Tourist Economies

March 17, 2026

Type above and press Enter to search. Press Esc to cancel.