TF-MAL-osx.cthulhu_stealer
📛 Threat Title
Malware family: Cthulhu Stealer
Description
ThreatFox malware family `osx.cthulhu_stealer`. Printable name: Cthulhu Stealer.
Indicators of Compromise (0)
No indicators of compromise on this threat.
References (1)
- ThreatFox: IOCs for this family ThreatFox Malwares
Remediations (10)
-
web:corelock.net
Cthulhu Stealer is a macOS information stealer sold as malware -as-a-service for around $500/month. It disguises itself as legitimate applications — commonly CleanMyMac, Grand Theft Auto IV, or Adobe tools — and uses fake password prompts to harvest your system credentials and cryptocurrency wallet passwords. It then steals browser data, Keychain entries, and wallet information.
-
web:hivepro.com
Attack Details #1 Cthulhu Stealer is a malware -as-a-service (MaaS) that targets macOS users and steals a wide range of sensitive information. Written in GoLang, a language known for its cross-platform capabilities. Cthulhu Stealer has been available since late 2023 for $500 per month, allowing multiple cybercriminals to use it against unsuspecting Mac owners.
-
web:malpedia.caad.fkie.fraunhofer.de
Details for the Cthulhu Stealer malware family including references, samples and yara signatures.
-
web:www.broadcom.com
Cthulhu Stealer Malware Targeting MacOS Environment Researchers have recently observed another malware -as-a-service (MaaS) that targets Mac users dubbed Cthulhu . This malware gets delivered as a disk image (DMG) with platform-specific binaries and developed in GoLang. It masquerades as legitimate software to trick users into opening the DMG, then uses macOS's 'osascript' tool to prompt for ...
-
web:www.darktrace.com
Cado Security (now part of Darktrace) analyzed " Cthulhu Stealer ," a macOS malware -as-a-service written in Go. It impersonates legitimate software, prompts for user and MetaMask passwords, and steals credentials, cryptocurrency wallets, and game accounts. Functionally similar to Atomic Stealer , Cthulhu was rented via an underground marketplace, but its operators faced complaints and a ban for ...
-
web:www.heise.de
Malware as a service: Cthulhu Stealer steals macOS keychain and more Pretending to be "GTA VI" - and then tapping into data: criminals are selling a new Mac malware to other crooks. Fortunately ...
-
web:www.itfunk.org
In the ever-evolving landscape of cybersecurity threats, new and more sophisticated forms of malware continue to emerge, targeting both individuals and organizations. One such menacing threat is the Cthulhu Stealer , a recently discovered strain of malware that poses significant risks to the security of your personal information and system integrity. This article delves into the nature of ...
-
web:www.microsoft.com
These commands, which are purported to install system utilities, load an infostealing malware like Macsync, Shub Stealer , and AMOS into the targets' devices instead. The malware then collects and exfiltrates data, including media files, iCloud data and Keychain entries, and cryptocurrency wallet keys.
-
web:www.pcrisk.com
What kind of malware is Cthulhu ? Cthulhu is an information stealer written in the the Go programming language and designed to appear as a legitimate application. Its primary purpose is to extract credentials and cryptocurrency wallets from various stores and game accounts. The stealer seems to be available for rent to individuals at a rate of $500 per month. Cthulhu stealer overview Once ...
-
web:www.rivitmedia.com
Malware like Cthulhu Stealer represents a significant concern for both individuals and organizations. This sophisticated and malicious software is designed to stealthily gather sensitive information, which can lead to severe consequences including identity theft, financial loss, and compromised personal data.
AI Forensic Analysis
Only Available for Registered Users. Sign in to view.