SlowMist New macOS Malware Targeting Telegram Sessions and Cryptocurrency
A new malware threat targeting macOS users has raised concerns across the cryptocurrency community after security researchers warned that attackers are using malicious software to steal Telegram Desktop sessions, cryptocurrency wallet information, browser data, and sensitive files stored on Apple devices.
According to information confirmed through CoinMarketCap’s official X account, blockchain security firm SlowMist has identified a new macOS malware campaign capable of compromising Telegram Desktop accounts while extracting data from more than a dozen cryptocurrency wallets, along with Apple Keychain information, Safari cookies, and Apple Notes.
The discovery highlights the growing risks facing cryptocurrency users as attackers continue developing more advanced methods to target digital assets and personal information.
Security experts have repeatedly warned that cryptocurrency holders are becoming increasingly attractive targets for cybercriminals because stolen wallet credentials, authentication data, and private information can potentially lead to significant financial losses.
Malware Campaign Targets Crypto Users Through macOS Devices
The latest warning from SlowMist demonstrates how cybercriminals are expanding their focus beyond traditional financial attacks and increasingly targeting cryptocurrency ecosystems.
Mac users have often been considered less vulnerable to malware compared with other operating systems, but security researchers say attackers are developing more sophisticated tools specifically designed for Apple devices.
The malware identified by SlowMist reportedly focuses on collecting valuable information stored within a user’s device.
This includes Telegram Desktop session data, which could allow attackers to access accounts without requiring the victim’s password. The malware also targets cryptocurrency wallet applications, browser information, and sensitive data stored through Apple’s built-in services.
The attack represents a significant threat because many crypto users rely on their computers to manage wallets, interact with exchanges, and store important authentication information.
Telegram Desktop Sessions Become a Major Target
One of the most concerning aspects of the malware is its ability to hijack Telegram Desktop sessions.
Telegram is widely used by cryptocurrency communities, including developers, investors, project teams, and trading groups. Because of this, gaining access to a Telegram account can provide attackers with valuable information and opportunities for further attacks.
A stolen session may allow criminals to access conversations, contact lists, and private groups without directly obtaining login credentials.
For cryptocurrency users, this creates additional risks because Telegram accounts are often connected to trading activities, investment discussions, and blockchain projects.
Attackers could potentially use compromised accounts to impersonate victims, distribute malicious links, or gather additional information about cryptocurrency holdings.
Cryptocurrency Wallet Information at Risk
SlowMist’s warning also highlights concerns about the malware’s ability to collect data from multiple cryptocurrency wallets.
Digital wallets are designed to protect access to cryptocurrency assets, but malware targeting wallet-related information can create serious security risks.
Attackers often attempt to steal wallet credentials, recovery information, or configuration files that could help them gain unauthorized access to funds.
The threat is especially serious because cryptocurrency transactions are generally irreversible. Unlike traditional banking systems, where fraudulent transfers may sometimes be recovered, stolen crypto assets are often difficult or impossible to retrieve.
Security experts recommend that cryptocurrency users maintain strong security practices, including using hardware wallets for significant holdings and avoiding storing sensitive information in easily accessible locations.
Apple Keychain and Safari Data Also Targeted
Beyond cryptocurrency-related information, the malware reportedly targets Apple Keychain data and Safari browser cookies.
Apple Keychain is a built-in password management system that stores login credentials, certificates, and other sensitive information.
If attackers successfully extract Keychain data, they may gain access to accounts beyond cryptocurrency platforms.
Safari cookies can also provide valuable information because they may contain active login sessions for websites and online services.
By stealing cookies, attackers may be able to bypass normal authentication processes and access accounts without knowing the user’s password.
The combination of stolen Telegram sessions, browser data, and wallet information makes this malware particularly concerning because it targets multiple areas of a user’s digital life.
Apple Notes Data Adds Another Layer of Risk
The malware’s reported ability to access Apple Notes further expands the potential damage.
Many users store important information in note-taking applications, including reminders, recovery phrases, personal documents, and account-related details.
For cryptocurrency users, storing wallet recovery phrases or private information in digital notes can create a major security vulnerability.
Cybersecurity professionals have repeatedly advised users not to keep sensitive cryptocurrency credentials in ordinary applications connected to the internet.
Instead, experts recommend using dedicated security tools and offline storage methods whenever possible.
| Source: Xpost |
Growing Cybersecurity Threats Against Cryptocurrency Users
The latest malware warning comes amid a broader increase in cyberattacks targeting cryptocurrency users.
As digital assets become more valuable and widely adopted, attackers have developed increasingly sophisticated methods to steal funds and personal information.
Crypto-related threats now include phishing campaigns, fake applications, malicious browser extensions, social engineering attacks, and advanced malware.
Unlike traditional financial crimes, cryptocurrency attacks often focus on obtaining direct control over digital assets rather than simply stealing account information.
This makes cybersecurity awareness especially important for anyone involved in the cryptocurrency industry.
How Users Can Protect Their Devices
Security experts recommend several steps to reduce the risk of malware infections.
Keeping operating systems and applications updated is one of the most important protections because software updates often include security improvements.
Users should also avoid downloading applications from unknown sources or clicking suspicious links sent through messages and emails.
For cryptocurrency protection, experts recommend using hardware wallets for large holdings and enabling additional security features whenever available.
Two-factor authentication can provide an additional layer of protection for online accounts, although users should avoid relying only on SMS-based security when stronger options are available.
Regularly reviewing account activity and removing unnecessary applications can also help reduce exposure to potential threats.
Why macOS Users Should Take Malware Threats Seriously
Although macOS has built-in security protections, no operating system is completely immune from attacks.
Cybercriminals increasingly develop malware designed specifically to bypass security measures and target valuable user information.
The growing popularity of cryptocurrency has created additional motivation for attackers to develop specialized tools.
Security researchers say users should avoid assuming that Apple devices are automatically protected from malware.
Instead, maintaining strong digital security habits remains essential regardless of the device being used.
The Importance of Security Awareness in Crypto Communities
Cryptocurrency communities often rely heavily on online communication platforms such as Telegram, Discord, and social media networks.
These platforms provide important connections between developers, investors, and users, but they also create opportunities for attackers.
A compromised account can quickly become a tool for spreading scams or targeting other members of a community.
Security awareness is therefore becoming increasingly important as the cryptocurrency industry grows.
Users must remain cautious about unexpected messages, unknown files, and suspicious software claiming to provide cryptocurrency-related services.
Malware Evolution Shows Increasing Sophistication
The SlowMist warning reflects a broader trend in cybersecurity where attackers are developing more advanced malware capable of collecting multiple types of sensitive information simultaneously.
Modern malware campaigns are no longer focused on a single target.
Instead, attackers increasingly seek complete access to a victim’s digital environment, including communication accounts, passwords, financial information, and personal files.
This approach allows criminals to maximize potential damage after gaining access to a device.
The combination of cryptocurrency wallet targeting and personal data theft demonstrates how cyber threats are becoming more complex.
Impact on the Cryptocurrency Industry
The emergence of advanced malware targeting crypto users highlights the importance of stronger security practices throughout the digital asset industry.
Cryptocurrency companies, wallet providers, and individual users all play a role in protecting assets from cyber threats.
As adoption continues to expand, security will remain one of the biggest challenges facing the industry.
Improving user education, developing stronger protection tools, and increasing awareness of emerging threats will be essential for maintaining trust in digital assets.
Conclusion
SlowMist’s warning about a new macOS malware campaign targeting Telegram Desktop sessions, cryptocurrency wallets, Apple Keychain data, Safari cookies, and Apple Notes highlights the growing cybersecurity risks facing digital asset users.
The threat demonstrates how attackers are adapting their methods to target valuable information stored on personal devices.
As cryptocurrency adoption continues worldwide, users must remain vigilant and adopt stronger security practices to protect their assets and personal data.
With cybercriminals constantly developing new techniques, cybersecurity awareness will remain a critical part of participating safely in the digital economy.
Description Penelusuran:
SlowMist warns about a new macOS malware campaign targeting Telegram Desktop sessions, crypto wallets, Apple Keychain, Safari cookies, and sensitive user data.
hoka.news – Not Just Crypto News. It’s Crypto Culture.
Writer @Victoria
Victoria Hale is a writer focused on blockchain and digital technology. She is known for her ability to simplify complex technological developments into content that is clear, easy to understand, and engaging to read.
Through her writing, Victoria covers the latest trends, innovations, and developments in the digital ecosystem, as well as their impact on the future of finance and technology. She also explores how new technologies are changing the way people interact in the digital world.
Her writing style is simple, informative, and focused on providing readers with a clear understanding of the rapidly evolving world of technology.
Disclaimer:
The articles on HOKA.NEWS are here to keep you updated on the latest buzz in crypto, tech, and beyond—but they’re not financial advice. We’re sharing info, trends, and insights, not telling you to buy, sell, or invest. Always do your own homework before making any money moves.
HOKA.NEWS isn’t responsible for any losses, gains, or chaos that might happen if you act on what you read here. Investment decisions should come from your own research—and, ideally, guidance from a qualified financial advisor. Remember: crypto and tech move fast, info changes in a blink, and while we aim for accuracy, we can’t promise it’s 100% complete or up-to-date.