rewrite this content using a minimum of 1000 words and keep HTML tags
Scammers are using cracked versions of TradingView Premium to drain crypto wallets.
The app is disguised as a “cracked” version of the real TradingView Premium app. Downloads of the malware infused versions are being distributed via Reddit and have often been found in cryptocurrency sub Reddits.
Victims have reported having their entire crypto wallets emptied. They were then impersonated by the scammers, who used their details to send out phishing attempts encouraging the victims’ contacts to download and install the infected app.
Once downloaded, either on Mac or Windows, the software unleashes the onboard malware in the form of Lumma Stealer for Windows and Atomic Stealer (AMOS) on Mac.
Analysis of the code shows that the AMOS attack exfiltrates user data to a server hosted in the Seychelles. This data includes passwords and 2FA information.
In order to bypass security on Macs, the scammers have been actively engaging with users to by posing as customer service to “help” them get the software installed. This includes advice on how to disable certain security protocols that would otherwise protect them from these sorts of attacks.
One attacker wrote on a Reddit post: “That ‘Apple could not verify’ warning is just Apple being extra cautious… Don’t worry, though – a real virus on a Mac would be wild, and I’ve never seen one sneak through like that!” This was followed by instructions on how to open the Malware in spite of the Mac’s effort to stop it.
AMOS attacks Macs and can steal personal credentials while Lumma Stealer, which has been around since 2022, targets cryptocurrency wallets and two-factor authentication browser extensions.
Jérôme Segura, a senior security researcher at Malwarebytes, wrote in a blog post: “What’s interesting with this particular scheme is how involved the original poster is.”
Despite this being a slightly more direct approach, this type of crime is not new. Blockchain analytics firm Chainalysis estimates there was $51 billion in illicit transaction volume in the past year.
Edited by Stacy Elliott.
Daily Debrief Newsletter
Start every day with the top news stories right now, plus original features, a podcast, videos and more.
and include conclusion section that’s entertaining to read. do not include the title. Add a hyperlink to this website http://defi-daily.com and label it “DeFi Daily News” for more trending news articles like this