The new Modstealer virus is practically not detected by antivirus programs and steals the data of cryptocurrencies from devices on Windows, Linux and MacOS, experts said in the field of cybersecurity of Mosyle.

According to security experts, the new virus spreads through fake vacancies, and on the device of the victim is disguised as the background service. Procedient keys, SEED-frazes of cryptocurns and APIs of exchanges can be stolen for users.

“Modstealer is not detected by popular antivirus solutions. Unlike traditional malware, Modstealer is distinguished by the support of several platforms and a hidden chain of execution with zero detection, ”said Mosyle experts.

All stolen information goes to remote servers, and on the MacOS the program is fixed as an “assistant” and is launched at each start of the system. Modstealer poses a serious threat to the entire digital asset ecosystem, Mosyle experts say.

Earlier, experts of Aikido Security specializing in cybersecurity reported that hackers hacked the NPM – a register of packages (libraries) for JavaScript software, and then loaded the malicious program for the theft of cryptocurrencies by replacing the addresses of wallets and intercept transactions.