Pseudo Claude applications launched attacks on over 50 cryptocurrency wallets
2026-09-02 03:18:51
According to CoinMeta, a cybersecurity company reported that a counterfeit Claude desktop application is spreading RevStealer malware, aimed at stealing data from over 50 cryptocurrency wallets and password managers. The malware is distributed by posing as an electronic application called “Claude Opus 5 Free Desktop,” taking advantage of the brand image of Anthropic. Morphisec indicated that the malware is spread within GitHub projects with a Claude theme, exploiting people's interest in paid AI tools to encourage users to install unverified software. The download package, which is approximately 101 megabytes in size, contains a 64-bit electronic application. Although victims expect to see the normal Claude interface, the program prepares an encrypted payload in the background and attempts to add users' application data folders to a Microsoft Defender blocklist. Morphisec stated that this process is designed to reduce evidence while quickly collecting and transmitting information.
Source:Cryptonews
This content is for market information only and does not constitute investment advice.
Follow HKWDB official accounts to stay updated

Hot Articles
Refresh

'No longer a distant place': F2Pool Co-founder Chun Wang joins SpaceX's 2-year mission to Mars
05-22 18:25

Polymarket Targets Japan Approval Despite Gambling Laws
05-22 18:00

ZachXBT flags suspected exploit involving Polymarket's UMA adapter contract on Polygon
05-22 17:57

ZachXBT flags $520K Polymarket exploit on Polygon, team says funds are safe
05-22 17:24

Verus bridge exploiter returns 4,052 ETH, retains $2.8 million bounty: onchain analyst
05-22 17:24



