• CONTACT
  • MARKETCAP
  • BLOG
Coin Mela Coin Mela
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Reading: New Malware Strain ModStealer Evades Antivirus Detection to Target Crypto Wallets
Share
  • bitcoinBitcoin(BTC)$90,970.00
  • ethereumEthereum(ETH)$3,121.92
  • tetherTether(USDT)$1.00
  • rippleXRP(XRP)$2.07
  • binancecoinBNB(BNB)$902.94
  • usd-coinUSDC(USDC)$1.00
  • solanaSolana(SOL)$135.44
  • tronTRON(TRX)$0.287367
  • staked-etherLido Staked Ether(STETH)$3,122.90
  • dogecoinDogecoin(DOGE)$0.141645
CoinMelaCoinMela
Font ResizerAa
  • Home
  • News
  • Learn
  • Market
  • Advertise
Search
  • Home
  • News
    • All News
    • Bitcoin
    • Ethereum
    • XRP
    • Altcoins
    • NFT
    • Blockchain
    • Web3
    • DeFi
    • Finance
    • Stocks
    • Company
  • Learn
  • Market
  • Advertise
Have an existing account? Sign In
Follow US
© Coin Mela Network. All Rights Reserved.
News

New Malware Strain ModStealer Evades Antivirus Detection to Target Crypto Wallets

News Desk
Last updated: September 12, 2025 7:30 am
News Desk
Published: September 12, 2025
Share
70f5103010df85882441640f97a168c054fb0ec1 1920x1080

A new strain of malware, identified as ModStealer, has been evading detection from major antivirus engines for nearly a month, according to security experts at Mosyle, a firm specializing in device security for Apple products. This infostealer has emerged as a significant concern, particularly for users involved in cryptocurrency, as it is specifically designed to harvest crypto wallet data.

Researchers from Mosyle indicated that ModStealer is being disseminated through malicious recruitment ads aimed at developers. The malware employs a highly obfuscated NodeJS script, allowing it to navigate past signature-based defenses which are common in antivirus solutions. This obfuscation obscures the code’s recognizable patterns, making it difficult for traditional security software to detect its malicious intent.

The implications of this are concerning; the ability to bypass existing protective measures means that attackers can surreptitiously introduce harmful instructions into a system, evading the scrutiny of standard security protocols. This capability renders conventional defenses less effective against such sophisticated and cleverly crafted threats.

One of ModStealer’s distinctive features is its cross-platform functionality, targeting not only macOS but also Windows and Linux systems. Its primary objective revolves around data exfiltration. The malware is suspected to contain preconfigured instructions to specifically target 56 browser wallet extensions, which could potentially allow it to extract private keys, login credentials, and associated security certificates.

In addition to its wallet-stealing capabilities, ModStealer boasts features like clipboard hijacking, screen capturing, and remote code execution, granting attackers substantial control over the compromised devices. On macOS, the malware achieves persistence through Apple’s LaunchAgent, establishing a foothold that enables continued operation even after a system reboot.

The characteristics of ModStealer reflect a trend towards “Malware-as-a-Service,” a model in which developers provide off-the-shelf malicious tools for less technically savvy affiliates. This model has led to an alarming increase in infostealers, with reports highlighting a 28% rise in such threats in 2025 alone, as noted by Jamf.

The emergence of ModStealer coincides with a series of npm-focused attacks, where malicious packages have utilized Ethereum smart contracts to hide subsequent malware. In these prior cases, attackers effectively exploited obfuscation techniques and built their operations within trusted developer frameworks to circumvent detection.

Through its evolution, ModStealer illustrates how cybercriminals are progressively refining their tactics. By extending attacks beyond conventional package repositories to infiltrate broader developer ecosystems, they are increasingly targeting critical areas like crypto wallets, showcasing an escalation in cyber threat strategies. This development raises urgent alarms within the cybersecurity community and highlights the need for enhanced detection and prevention measures.

Asia’s Stock Markets Show Resilience Amid Economic Uncertainties, Highlighting Attractive Dividend Stocks
American Bitcoin Corp. Faces Volatility as Pre-Merger Share Lock-Up Expires
CaliberCos Inc. Completes Initial Purchase of Chainlink Tokens as Part of Digital Asset Treasury Strategy
BTC Inc. and Strategy Inc. Renew Partnership to Boost Corporate Bitcoin Adoption Through 2030
Bitcoin sinks as Fed delivers rate cut and forward commentary
Share This Article
Facebook Whatsapp Whatsapp
ByNews Desk
Follow:
CoinMela News Desk brings you the latest updates, insights, and in-depth coverage from the world of cryptocurrencies, blockchain, and digital finance.
Previous Article lbn1 66 BullZilla Presale Emerges as Top Contender for 100x Gains in 2025
Next Article pic 88 d 42baf6b2 d65d 4b4b a98b f6cab8a6c198 GBP/USD Outlook: Consolidation Amid CPI and Central Bank Decisions
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular News
urlhttps3A2F2Fg.foolcdn.com2Feditorial2Fimages2F8456672Fblockchain cryptocurrency data
Bitcoin vs. XRP: Evaluating Investment Potential in a Cooling Crypto Market
G7 R Yr Qo XIAAS 8 OP 6eb05323e4
Fanatics Launches Prediction Marketplace in Partnership with Crypto.com
402f3d05bf0fb4c175a7e7aabdfc0369d238e053 1198x730
Memecoin Struggles Below $0.1409 Resistance Despite Surge in Institutional Flows
- Advertisement -
Ad image

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

Twitter Youtube Telegram Linkedin
Coin Mela Coin Mela
CoinMela is your one-stop destination for everything Crypto, Web3, and DeFi news.
  • About Us
  • Contact Us
  • Corrections
  • Terms and Conditions
  • Disclaimer
  • Privacy Policy
  • Advertise with Us
  • Quick Links
  • Finance
  • Company
  • Stocks
  • Bitcoin
  • News
  • XRP
  • Ethereum
  • Altcoins
  • Blockchain
  • DeFi
© Coin Mela Network. All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?