BTC $77,417.92 -1.51%
ETH $2,421.07 -1.84%
BNB $683.81 -0.74%
XRP $1.36 -0.80%
SOL $101.15 -1.44%
TRX $0.3240 -2.70%
DOGE $0.0821 -0.89%
ADA $0.1964 +0.29%
BCH $245.93 +0.40%
LINK $11.36 +0.34%
HYPE $82.31 +0.42%
AAVE $125.90 +2.38%
SUI $0.7250 +0.62%
XLM $0.1763 +0.08%
ZEC $834.07 -0.69%
BTC $77,417.92 -1.51%
ETH $2,421.07 -1.84%
BNB $683.81 -0.74%
XRP $1.36 -0.80%
SOL $101.15 -1.44%
TRX $0.3240 -2.70%
DOGE $0.0821 -0.89%
ADA $0.1964 +0.29%
BCH $245.93 +0.40%
LINK $11.36 +0.34%
HYPE $82.31 +0.42%
AAVE $125.90 +2.38%
SUI $0.7250 +0.62%
XLM $0.1763 +0.08%
ZEC $834.07 -0.69%

A fake Claude desktop application spreads RevStealer malware, capable of stealing data from over 50 types of cryptocurrency wallets

2026-09-01 22:50:55

According to Cointelegraph, cybersecurity company Morphisec has revealed that a counterfeit desktop application disguised as "Claude Opus 5 Free Desktop" from Anthropic is being used to spread the Windows malware RevStealer. This software can steal data from over 50 types of cryptocurrency wallets, while also collecting sensitive information such as browser passwords, cookies, VPN configurations, message logs, and screenshots.

RevStealer has anti-detection mechanisms that perform environmental checks on the target device before execution; if it detects characteristics of a debugging or virtual environment, it will stop running. In addition, Russian cybersecurity company Kaspersky has also disclosed another new malware framework targeting cryptocurrency investors called OkoBot, which can harvest wallet files, inject malicious extensions, and capture wallet application windows to steal assets.

app_icon
ChainCatcher Building the Web3 world with innovations.