Loading market data...
Back to Feed
CRYPTO NEWS

Fake Claude desktop app spreads crypto-stealing malware

Reported by Cointelegraph · AI-assisted summary by ChikoCorp AI News Desk

Published on CryptoNews: Source published: 2 min read
AI-generated editorial illustration for Fake Claude desktop app spreads crypto-stealing malware
AI-generated editorial illustration.
Visit source

AI-generated summary based on the linked source; not independently verified. This is not investment advice. Verify market-moving details at the original publisher before acting. See our editorial policy, AI content policy, and financial disclaimer.

AIAnthropic

Summary

A fake Claude desktop application is being used to distribute RevStealer, a Windows malware designed to steal cryptocurrency wallets, passwords, browser data, and other sensitive information. The malware targets over 50 crypto wallets and collects data such as cookies, VPN settings, messaging data, and selected documents. It was reported by cybersecurity company Morphisec and impersonates AI developer Anthropic by offering free access to Claude.

Why it matters

The source highlights the threat posed by RevStealer to cryptocurrency users and the broader security risks due to its ability to stealthily steal a wide range of data. The development signals an ongoing risk to crypto investors from sophisticated malware campaigns impersonating legitimate software.

Key context

RevStealer was previously distributed through GitHub repositories and cheat-themed websites before the fake Claude app distribution. The malware performs environment checks to avoid detection and only executes its payload on devices that appear legitimate, helping it evade malware analysis systems. This report follows a discovery by Kaspersky of another crypto-targeting malware called OkoBot with similar theft capabilities.

Key numbers and entities

The malware targets more than 50 cryptocurrency wallets. Key organizations involved include Morphisec, the cybersecurity firm reporting RevStealer, Anthropic, the AI developer being impersonated, and Kaspersky, which recently discovered OkoBot malware.

What remains unclear

The article does not provide specific details on how widespread the infection is, the geographic scope of affected users, or any mitigation or removal steps recommended to users. It also does not mention whether the fake Claude app is still available or how users might distinguish it from the legitimate software.

Read the original source

> JOIN THE ALPHA

Get a free crypto news briefing in your inbox. No fake subscriber counts — just the latest source-backed headlines we cache.

>
[ENCRYPTED][NO_SPAM][UNSUBSCRIBE_ANYTIME]