BTC $64,844.65 +1.51%
ETH $1,926.49 +1.26%
BNB $592.29 +3.85%
XRP $1.08 +1.27%
SOL $74.64 +1.58%
TRX $0.3286 +0.97%
DOGE $0.0706 +1.00%
ADA $0.1696 +4.89%
BCH $216.44 +3.03%
LINK $8.47 +2.17%
HYPE $55.92 +4.00%
AAVE $99.45 +3.25%
SUI $0.6946 +1.47%
XLM $0.1724 +0.52%
ZEC $472.80 +1.28%
BTC $64,844.65 +1.51%
ETH $1,926.49 +1.26%
BNB $592.29 +3.85%
XRP $1.08 +1.27%
SOL $74.64 +1.58%
TRX $0.3286 +0.97%
DOGE $0.0706 +1.00%
ADA $0.1696 +4.89%
BCH $216.44 +3.03%
LINK $8.47 +2.17%
HYPE $55.92 +4.00%
AAVE $99.45 +3.25%
SUI $0.6946 +1.47%
XLM $0.1724 +0.52%
ZEC $472.80 +1.28%

wallets

All
Article
Flash

macOS malware can bypass Telegram's two-factor authentication to steal cryptocurrency wallets and account permissions

According to FinanceFeeds, security researchers have discovered an information-stealing malware targeting macOS devices that is attacking cryptocurrency users. This malware can hijack Telegram Desktop sessions, steal passwords and wallet databases, further controlling user accounts and stealing digital assets. Currently affected wallets and applications include software wallets like Exodus, Atomic, Electrum, Wasabi, and Monero.The malware is capable of extracting sensitive information from macOS Keychain, Safari Cookies, Apple Notes, Telegram Desktop, and multiple cryptocurrency wallet-related databases, including login credentials, authenticated session files, wallet data, and browser extension information. Security analysis points out that the danger of this attack chain lies in its reliance not on a single wallet vulnerability, but on collecting various types of data from the device, linking device intrusion, account takeover, wallet cracking, and mnemonic phrase theft together. Among these, Telegram Desktop sessions have become a key target.Attackers can copy authenticated Telegram local session data and restore the login on another Mac device without needing to enter a phone number, verification code, or Telegram two-factor authentication password. This means that Telegram 2FA cannot provide complete protection in this attack scenario, as the attacker is not performing a new login but is exploiting an already trusted local session. For cryptocurrency users, the risks are further amplified. Since Telegram is widely used for exchange customer service, project communities, OTC trading, and wallet communication, once attackers gain access to user session permissions, they could impersonate the victim, read private chats, locate asset information, and even spread malicious links to contacts.

Binance Co-CEO: After the suspension of services in the EU, about 70% of users have transferred withdrawals to self-custody wallets

According to The Block, Binance Co-CEO Richard Teng stated at the Reuters NEXT Asia summit in Singapore that after Binance suspended services to some EU users, about 70% of users' withdrawal assets flowed to self-custody wallets, with only 30% transferred to licensed platforms that comply with MiCA regulatory requirements.Richard Teng indicated that this data raises questions about the regulatory goals of MiCA. He pointed out that self-custody wallets are not subject to the anti-money laundering (AML) and KYC regulatory frameworks of regulated trading platforms, and the risk may actually increase once user assets are transferred to self-custody.Previously, Binance proactively withdrew its application for a MiCA license in Greece after it failed to be approved before the July 1 transition deadline, and suspended related services to affected EU users. Richard Teng stated that Binance has not given up on the European market, and several EU countries have invited it to reapply for local licenses, although he did not disclose specific countries.In addition, Richard Teng mentioned that Binance plans to continue accelerating its expansion in the Asian market, having already obtained relevant licenses or permissions in markets such as Japan, South Korea, Thailand, Indonesia, Australia, India, and Pakistan, and expects to gain more regulatory approvals this year. Currently, Binance's global user base has increased to approximately 323 million.
app_icon
ChainCatcher Building the Web3 world with innovations.