SlowMist flags new macOS malware that can steal Telegram sessions, passwords and crypto
SlowMist flagged new macOS malware that can exfiltrate Telegram sessions, encrypted desktop wallet databases, and credentials stored in Apple Keychain/browsers/Notes, enabling offline wallet compromise and recovery-phrase theft via spoofed Ledger/Trezor interfaces. The threat is chain-agnostic but raises near-term operational risk for retail and desk users who manage private keys on Macs and rely on Telegram workflows, potentially increasing security-driven caution across crypto markets.
AI Insight · BTC/USDTAI Insight
▼ Bearish
⚠️ AI-generated insights are based on news content and are provided for informational purposes only. They do not constitute investment advice or represent the views of BingX. Investing involves risk. Please trade responsibly.
Security firm SlowMist said it has identified a new macOS malware targeting Apple Mac users that can steal Telegram login sessions, encrypted local wallet databases, and passwords stored in Apple Keychain, browsers and Notes. The attackers can use the stolen data to access chats and unlock wallets offline. The malware can also display fake hardware wallet apps, including Ledger and Trezor, to trick users into entering recovery phrases.