Хакеры создали вредоносный клон Ledger Live для macOS

cryptonews.ruPublicado a 2025-04-23Actualizado a 2025-05-23

Компания Moonlock обнаружила вредоносную кампанию, нацеленную на пользователей Ledger Live для macOS.

Злоумышленники заменяют официальное приложение фейковым, которое собирает сид-фразы и опустошает кошельки.

Поддельная версия Ledger Live внедряется через Atomic macOS Stealer — малварь, которая скрывается на взломанных сайтах. После заражения ПО похищает пароли, заметки и данные кошельков, а затем заменяет оригинальное приложение Ledger на фейковое.

Софт имитирует критическое уведомление о «подозрительной активности» и требует ввести сид-фразу. Как только пользователь вводит данные, они отправляются на серверы злоумышленников, позволяя мгновенно вывести средства.

По данным Moonlock, первая волна атак началась в августе 2024 года. За это время хакеры усовершенствовали методы: если раньше они могли лишь отслеживать активность в кошельках, то теперь научились красть сид-фразы.

В даркнете злоумышленники рекламируют вредоносное ПО с «анти-Ledger» функциями. Однако анализ Moonlock показал, что часть обещанных возможностей (например, обход защиты) пока не реализована. Эксперты предполагают, что эти функции могут добавить в будущих обновлениях.

«Это не просто кража, а целенаправленная атака на один из самых надежных инструментов в криптоиндустрии. Преступники не остановятся», — заявили в Moonlock.

Напомним, в апреле клиенты Ledger начали получать физические письма с логотипом компании. В них требовали верифицировать адрес через ввод сид-фразы.

В мае Ledger восстановил контроль над Discord-каналом после атаки хакеров.

Lecturas Relacionadas

During the World Cup, USDT becomes the preferred chip for illegal gambling? Beware of three typical scams

During the 2026 FIFA World Cup, USDT has become the preferred payment method for illegal online gambling due to its price stability, anonymity, and fast cross-border transfers. This article analyzes how USDT facilitates this activity and outlines three major scams targeting users. **Why USDT is the "Chip of Choice"**: It solves bettors' anxiety over crypto volatility, enables instant cross-border transfers without traditional banking, and shows significant abnormal transaction spikes during major events. **The Fund Flow**: Gambling platforms use a complex laundering chain involving multi-layer address hopping, cross-chain transfers (e.g., Polygon to Tron), mixers like Tornado Cash, and final cash-out via exchanges. **Three Typical Scams**: 1. **"USDT Betting Evades Regulation"**: Fake platforms promising anonymous, high-odds betting but manipulating outcomes. 2. **Fake Sportsbooks**: High-quality replica sites that allow small initial withdrawals to build trust before freezing accounts with larger funds. 3. **"Insider Tips / Guaranteed Wins"**: Schemes selling fabricated "AI predictions" or "fixed match" models to exploit information anxiety. **Identifying Suspicious Addresses**: Key chain-based indicators include a "fast-in, fast-out" transaction pattern, clustered addresses with consistent behavior, uniform Gas fee patterns, and frequent cross-chain jumps. **User Protection Advice**: * Avoid any project promoting "USDT betting," "Web3 predictions," or "anonymous high returns." * Be skeptical of promises like "guaranteed wins" or "insider models." * Do not trust platforms just because they allow small withdrawals—this is a common trust-building tactic. * If scammed, preserve all evidence: transaction hashes, wallet addresses, chat logs, and platform URLs. **Conclusion**: USDT provides unprecedented liquidity for illicit activities. The most effective protection for users is complete non-participation in any form of online crypto gambling.

marsbitHace 9 min(s)

During the World Cup, USDT becomes the preferred chip for illegal gambling? Beware of three typical scams

marsbitHace 9 min(s)

Zoomex X Space Recap With Djibril Cissé and the World Cup Trading Panel

Zoomex hosted a World Cup-themed X Space with Champions League winner Djibril Cissé and four crypto traders, discussing pressure management, analysis, and philosophy, and launching a charity pledge. Cissé emphasized embracing pressure in critical moments, drawing from his experience taking a penalty in a Champions League final. The traders agreed that managing stress comes from systematic preparation and clear risk parameters before executing a trade. The conversation explored parallels between football and trading. Cissé highlighted pace as his key weapon, but stressed that output (goals) matters more than tools. The traders debated timing versus speed of execution, concluding that timing is paramount and relative to one's timeframe. Discussing resilience, Cissé shared his mindset after major injuries: focusing on recovery and finding the positive. Similarly, traders emphasized learning from losses rather than avoiding them. Cissé declined to speculate on alternate histories, like France's 2006 World Cup run without his injury, stating one must work only with reality—a principle directly applicable to trading. In a lighter segment, traders mapped cryptocurrencies to national teams (e.g., Bitcoin to Brazil/France). The core lesson was that high performers, in both fields, thrive on uncertainty by relying on tested systems and focusing solely on actionable information. The session was part of Zoomex's World Cup Impact Pledge, which includes charity donations tied to guest predictions.

TheNewsCryptoHace 17 min(s)

Zoomex X Space Recap With Djibril Cissé and the World Cup Trading Panel

TheNewsCryptoHace 17 min(s)

Fed Turns Hawkish, Wall Street Capitulates, Citi Stands as 'Last Holdout': Insists on Resuming Rate Cuts in October

Amid a surprisingly hawkish shift from the Fed and most of Wall Street capitulating on rate cut expectations, Citigroup stands as a notable outlier, holding firm to its forecast for monetary easing to restart this October. Following the June FOMC meeting, where the "dovish bias" was removed and the dot plot shifted dramatically, markets priced in nearly 37bps of tightening for 2026. Major banks like Deutsche Bank and Goldman Sachs revised their calls, predicting rate hikes as soon as September. Citigroup, however, maintains a baseline scenario for a 25bps rate cut in October, followed by two more cuts in December and January 2027. Its counter-consensus view rests on three key arguments: 1) Plunging oil prices are eliminating a major inflation upside risk. 2) Rising initial jobless claims are mirroring seasonal weakening patterns seen in 2024-2025, signaling a labor market cool-down. 3) The strong core PCE is an "outlier," heavily influenced by AI-related prices and equity market gains rather than broad consumer price pressures, with other inflation metrics showing more moderation. While Wall Street largely "surrenders" to the hawkish Fed narrative, with Deutsche Bank forecasting two hikes and Goldman Sachs warning of potential back-to-back moves, Citigroup remains the "last holdout," betting that disinflationary forces will pave the way for cuts before year-end.

marsbitHace 18 min(s)

Fed Turns Hawkish, Wall Street Capitulates, Citi Stands as 'Last Holdout': Insists on Resuming Rate Cuts in October

marsbitHace 18 min(s)

Open Systems Will Ultimately Prevail: Why Ethereum Is the Next Linux?

The article "Open Systems Will Ultimately Prevail: Why Ethereum Is the Next Linux?" argues that Ethereum, like Linux before it, will triumph over closed, proprietary systems in finance due to its open, permissionless, and credibly neutral nature. It draws a historical parallel: just as the open internet defeated corporate private networks and Linux outcompeted proprietary Unix systems, open financial infrastructure like Ethereum will surpass private blockchains. The core advantage lies in the "bazaar" development model (as described in Eric Raymond's "The Cathedral and the Bazaar"), where decentralized, permissionless innovation by a global community of developers outpaces the controlled "cathedral" approach of centralized entities. This model fosters rapid innovation, as seen with Ethereum standards like ERC-20 and applications like Uniswap, which were built without needing permission. Ethereum's key, irreplicable strength is its credible neutrality: transparent, equally applicable, immutable rules that allow anyone to participate. This ensures sovereign independence, meaning no single entity (company, government) can control or change its core rules—a critical feature for global financial infrastructure. In contrast, private blockchains and consortium chains (like SWIFT or various bank-led projects) suffer from platform risk, central control, and an inability to attract broad developer ecosystems, leading to frequent failures. The article notes that major institutions (e.g., BlackRock, JPMorgan, Coinbase, Robinhood) are already building on Ethereum or its Layer 2 networks, recognizing its security, developer ecosystem, and network effects. While critics argue finance requires accountable, controlled systems, the response is that compliance (KYC, regulations) can be built at the application layer on top of a neutral settlement layer like Ethereum, just as secure commerce was built on the open internet via HTTPS. Ultimately, the thesis is that attempting to build walled-garden, proprietary financial networks is a flawed strategy that stifles innovation. The winning approach is to build applications on top of open, credibly neutral infrastructure like Ethereum, which is poised to become the foundational settlement layer for global finance.

Foresight NewsHace 29 min(s)

Open Systems Will Ultimately Prevail: Why Ethereum Is the Next Linux?

Foresight NewsHace 29 min(s)

Trading

Spot
Futuros
活动图片