CONTACT FOR ADS

BTCinsider – Bitcoin, Blockchain & DeFi News
  • BOOKMARKS
  • Crypto
    • Bitcoin
    • Ethereum
    • Forex
    • Tether
    CryptoShow More
    Bitcoin Creator Satoshi Nakamoto Is Now Richer Than Bill Gates—And Closing In on Buffett
    Bitcoin Creator Satoshi Nakamoto Is Now Richer Than Bill Gates—And Closing In on Buffett
    17.07.2025
    Man Attempts Tattoo World Record By Inking ‘Pump.fun’ on Himself 700 Times
    Man Attempts Tattoo World Record By Inking ‘Pump.fun’ on Himself 700 Times
    17.07.2025
    House Clears Key Crypto Bills for Final Vote After Record 9-Hour Standoff
    House Clears Key Crypto Bills for Final Vote After Record 9-Hour Standoff
    17.07.2025
    Whatever Happened to the Bitcoin and Ethereum Sweater Guys?
    Whatever Happened to the Bitcoin and Ethereum Sweater Guys?
    17.07.2025
    SEC Delays Decision on Bitwise Bitcoin, Ethereum ETFs' In-kind Redemptions
    SEC Delays Decision on Bitwise Bitcoin, Ethereum ETFs’ In-kind Redemptions
    17.07.2025
  • DeFi
  • Market
    • Binance
    • Business
    • Investor
    • Money
    • Trading
    MarketShow More
    Canary Files for Staked Injective ETF as Interest in Altcoin Funds Grows
    Canary Files for Staked Injective ETF as Interest in Altcoin Funds Grows
    18.07.2025
    BlackRock Files With SEC to Include Staking in Ethereum ETF
    BlackRock Files With SEC to Include Staking in Ethereum ETF
    17.07.2025
    Recapping the latest US data: Philly Fed, retail sales and more
    Recapping the latest US data: Philly Fed, retail sales and more
    17.07.2025
    Why famed short seller Jim Chanos is warning Bitcoin treasury companies of SPAC-style risk
    Why famed short seller Jim Chanos is warning Bitcoin treasury companies of SPAC-style risk
    17.07.2025
    Bitcoin smack dab in the middle of its adoption curve: Fidelity analyst
    Bitcoin smack dab in the middle of its adoption curve: Fidelity analyst
    17.07.2025
  • News
    • Mining
    • NFT
    • Stocks
    • Web3
    • Tech
    NewsShow More
    Crypto holders beware: Physical attacks will hit new record in 2025 for one reason, warns Chainalysis
    Crypto holders beware: Physical attacks will hit new record in 2025 for one reason, warns Chainalysis
    17.07.2025
    Cybercriminals are about to steal more crypto in 2025 than ever before, says Chainalysis
    Cybercriminals are about to steal more crypto in 2025 than ever before, says Chainalysis
    17.07.2025
    Ethereum ETFs gobble up $720m investment record in ‘clear acceleration’ to outpace Bitcoin
    Ethereum ETFs gobble up $720m investment record in ‘clear acceleration’ to outpace Bitcoin
    17.07.2025
    Axie Infinity exec, NFT scammer testify in Roman Storm trial
    Axie Infinity exec, NFT scammer testify in Roman Storm trial
    17.07.2025
    Is ‘Ethereum season’ dawning following a 30% rally? The three reasons why Arthur Hayes says yes
    Is ‘Ethereum season’ dawning following a 30% rally? The three reasons why Arthur Hayes says yes
    16.07.2025
  • Contact Us
Reading: North Korean hackers targeting crypto projects with unusual Mac exploit
Share
  • bitcoinBitcoin(BTC)$119,208.03
  • ethereumEthereum(ETH)$3,414.15
  • rippleXRP(XRP)$3.37
  • tetherTether USDt(USDT)$1.00
  • binancecoinBNB(BNB)$715.79
  • solanaSolana(SOL)$173.46
  • usd-coinUSDC(USDC)$1.00
  • dogecoinDogecoin(DOGE)$0.211798
  • tronTRON(TRX)$0.316046
  • cardanoCardano(ADA)$0.80
Font ResizerAa
BTCinsider – Bitcoin, Blockchain & DeFi NewsBTCinsider – Bitcoin, Blockchain & DeFi News
  • Home
  • Crypto
  • Market
  • News
  • Tech
  • Contact
Search
  • Home
  • Market
    • Business
    • Investor
  • Tech
  • News
    • Web3
    • NFT
  • DeFi
  • Crypto
Have an existing account? Sign In
Follow US
© All Rights Reserved.
Business

North Korean hackers targeting crypto projects with unusual Mac exploit

Roman Hasley
Last updated: 03.07.2025 10:37 AM
Roman Hasley
Published: 03.07.2025
Share
North Korean hackers targeting crypto projects with unusual Mac exploit

North Korean Hackers Launch Sophisticated Cyberattacks on Apple Devices

Cybersecurity firm Sentinel Labs reports that North Korean-aligned hackers are targeting cryptocurrency companies using novel malware, the NimDoor strain, delivered via deceptive Zoom updates.

Contents
North Korean Hackers Launch Sophisticated Cyberattacks on Apple DevicesNimdoor Targets Mac ComputersMacs Get Viruses, Too
Illustration depicting a fake Zoom update link used in phishing attacks.
Sentinel Labs

The campaign utilizes social engineering tactics, impersonating trusted contacts on messaging apps like Telegram, before luring victims with fake Zoom meeting invitations via Google Meet links. The perpetrators then distribute a fraudulent Zoom update, falsely appearing as downloaded from Zoom.

Nimdoor Targets Mac Computers

Upon execution of the compromised file, the NimDoor malware payload—forged to exploit human trust and technical naivety—installs on the Mac system. Its target: cryptocurrency wallets and browser-stored login credentials.

“…the use of Nim compiled binaries on macOS is a more unusual choice” — Sentinel Labs Researchers

Contrary to long-held assumptions that Mac systems are inherently less vulnerable, various campaigns now demonstrate sophisticated macOS malware deployment.

The NimDoor malware is particularly insidious due to its construction. Written in Nim—a newer, less common language favored by cybercriminals for cross-platform compatibility across Windows, Mac, and Linux—it features compilation speed, standalone executable generation, and enhanced evasion capabilities.

“Although early-stage attacks adhere to familiar DPRK tactics concerning social engineering, lures, and fake updates, Nim’s use on macOS stands out.” — Sentinel Labs Researchers

The payload carries a credential-stealing module designed to silently harvest browser data, system information, and package it for transmission back to the attackers. It specifically targets Telegram’s encrypted local database and decryption keys. Adding another layer of sophistication, it activates ten minutes post-infection to potentially elude security scanners.

Macs Get Viruses, Too

Cybersecurity provider Huntress linked similar infiltration attempts to North Korean-sponsored group “BlueNoroff,” malware capable of bypassing macOS memory protections.

Furthermore, SlowMist blockchain security firm recently issued an alert concerning a massive campaign of fake Firefox extension downloads designed to steal cryptocurrency credentials.

“Over the last few years, macOS has become a larger target for threat actors, especially state-sponsored attackers.” — Sentinel Labs Researchers

This emerging threat landscape underscores a critical shift and dispels outdated security myths surrounding the Macintosh platform.

Related Story: Crypto Firms Report Record North Korean Fake Zoom Phishing

Superstate CEO Robert Leshner Buys Majority Stake in ‘Shady’ Liquor Vendor With BTC Strategy
OKX joins Paxos’ USDG network as stablecoin push intensifies
SocGen’s Crypto Arm Unveils Dollar Stablecoin on Ethereum and Solana
Anti-Bitcoin Vanguard Might Be the Largest Institutional Holder of MSTR Stock
BoA exploring stablecoins to help move trillions in client transactions, CEO says

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.

By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Telegram Email Copy Link Print
Share
Previous Article BlackRock’s Bitcoin ETF Generating More Revenue Than Its Flagship S&P 500 Fund BlackRock’s Bitcoin ETF Generating More Revenue Than Its Flagship S&P 500 Fund
Next Article Deutsche Bank’s DWS, Galaxy, Flow Traders Venture to Introduce German-Regulated Stablecoin Deutsche Bank’s DWS, Galaxy, Flow Traders Venture to Introduce German-Regulated Stablecoin
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Subscribe to our newslettern

Get Newest Articles Instantly!

- Advertisement -
Ad image
Popular News
Canary Files for Staked Injective ETF as Interest in Altcoin Funds Grows
Canary Files for Staked Injective ETF as Interest in Altcoin Funds Grows
'Dogecoin Millionaire' Is Now a Pepe Millionaire—And He’s Stacking These Meme Coins Next
‘Dogecoin Millionaire’ Is Now a Pepe Millionaire—And He’s Stacking These Meme Coins Next
Performance Art Duo Operator 'Make Movement Collectible' With NFTs
Performance Art Duo Operator ‘Make Movement Collectible’ With NFTs

You Might Also Like

IOST Raises $21M to Expand the Rollout of its Tokenized Asset Infrastructure
Business

IOST Raises $21M to Expand the Rollout of its Tokenized Asset Infrastructure

10.06.2025
China’s JD Eyes Global Stablecoin Licenses to Slash Payment Costs
Business

China’s JD Eyes Global Stablecoin Licenses to Slash Payment Costs

19.06.2025
Katana Mainnet Goes Live as Pre-Deposits Hit $180M
Business

Katana Mainnet Goes Live as Pre-Deposits Hit $180M

30.06.2025
Peter Thiel Bets Big on Ethereum, Buys Stake in Treasury Firm Chaired by Fundstrat's Tom Lee
Business

Peter Thiel Bets Big on Ethereum, Buys Stake in Treasury Firm Chaired by Fundstrat’s Tom Lee

16.07.2025

Follow Us on Socials

We use social media to react to breaking news, update supporters and share information

BTCinsider – Bitcoin, Blockchain & DeFi News

With 20 million users, we are the #1 global business blockchain and cryptocurrency news network.

Subscribe to our newsletter

You can be the first to find out the latest news and tips about trading, markets...

Ad image
© All Rights Reserved.
Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?

Not a member? Sign Up