• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: New Malware Strain ModStealer Evades Antivirus Detection to Target Crypto Wallets
Share
  • bitcoinBitcoin(BTC)$74,543.00
  • ethereumEthereum(ETH)$2,335.10
  • tetherTether(USDT)$1.00
  • rippleXRP(XRP)$1.41
  • binancecoinBNB(BNB)$620.82
  • usd-coinUSDC(USDC)$1.00
  • solanaSolana(SOL)$85.04
  • tronTRON(TRX)$0.327153
  • Figure HelocFigure Heloc(FIGR_HELOC)$1.03
  • dogecoinDogecoin(DOGE)$0.096239
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
News

New Malware Strain ModStealer Evades Antivirus Detection to Target Crypto Wallets

News Desk
Last updated: September 12, 2025 7:30 am
News Desk
Published: September 12, 2025
Share
70f5103010df85882441640f97a168c054fb0ec1 1920x1080

A new strain of malware, identified as ModStealer, has been evading detection from major antivirus engines for nearly a month, according to security experts at Mosyle, a firm specializing in device security for Apple products. This infostealer has emerged as a significant concern, particularly for users involved in cryptocurrency, as it is specifically designed to harvest crypto wallet data.

Researchers from Mosyle indicated that ModStealer is being disseminated through malicious recruitment ads aimed at developers. The malware employs a highly obfuscated NodeJS script, allowing it to navigate past signature-based defenses which are common in antivirus solutions. This obfuscation obscures the code’s recognizable patterns, making it difficult for traditional security software to detect its malicious intent.

The implications of this are concerning; the ability to bypass existing protective measures means that attackers can surreptitiously introduce harmful instructions into a system, evading the scrutiny of standard security protocols. This capability renders conventional defenses less effective against such sophisticated and cleverly crafted threats.

One of ModStealer’s distinctive features is its cross-platform functionality, targeting not only macOS but also Windows and Linux systems. Its primary objective revolves around data exfiltration. The malware is suspected to contain preconfigured instructions to specifically target 56 browser wallet extensions, which could potentially allow it to extract private keys, login credentials, and associated security certificates.

In addition to its wallet-stealing capabilities, ModStealer boasts features like clipboard hijacking, screen capturing, and remote code execution, granting attackers substantial control over the compromised devices. On macOS, the malware achieves persistence through Apple’s LaunchAgent, establishing a foothold that enables continued operation even after a system reboot.

The characteristics of ModStealer reflect a trend towards “Malware-as-a-Service,” a model in which developers provide off-the-shelf malicious tools for less technically savvy affiliates. This model has led to an alarming increase in infostealers, with reports highlighting a 28% rise in such threats in 2025 alone, as noted by Jamf.

The emergence of ModStealer coincides with a series of npm-focused attacks, where malicious packages have utilized Ethereum smart contracts to hide subsequent malware. In these prior cases, attackers effectively exploited obfuscation techniques and built their operations within trusted developer frameworks to circumvent detection.

Through its evolution, ModStealer illustrates how cybercriminals are progressively refining their tactics. By extending attacks beyond conventional package repositories to infiltrate broader developer ecosystems, they are increasingly targeting critical areas like crypto wallets, showcasing an escalation in cyber threat strategies. This development raises urgent alarms within the cybersecurity community and highlights the need for enhanced detection and prevention measures.

Crypto Crash Sees Over $1.2 Trillion Wipeout Amid Global Sell-Off
Palantir’s Stock Faces Headwinds Despite Strong Q4 2025 Earnings and Revenue Growth
Social Security reforms may target high earners first
New York Fed’s Williams: November Inflation Data Likely Distorted by Technical Factors
Analyst Claims XRP’s True Circulating Supply Is Significantly Lower Than Perceived
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article lbn1 66 BullZilla Presale Emerges as Top Contender for 100x Gains in 2025
Next Article pic 88 d 42baf6b2 d65d 4b4b a98b f6cab8a6c198 GBP/USD Outlook: Consolidation Amid CPI and Central Bank Decisions
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
d33465ac986a2fe580a4eede40192337
New Proposal to Lock Away Bitcoin Founder Satoshi Nakamoto’s Wallets Risks Controversy Amid Quantum Concerns
156bfd2e8339d7d7e0547c43d9a4166a
XRP Leads Gains Among Top Ten Cryptocurrencies, Rising 4%
ae34a08d0d29f0247abd55a0dbd6bb1f
Cramer Discusses Shopify’s Potential Amid AI Concerns and Strong Fundamentals
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Company
  • Finance
  • Stocks
  • News
  • Bitcoin
  • XRP
  • Ethereum
  • Altcoins
  • Blockchain
  • DeFi
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?