Kaspersky Uncovers Dangerous New MacSync Malware Targeting macOS Users' Crypto Wallets and Login Data

Updated MacSync Infostealer Poses Fresh Threat to Apple Mac Users Worldwide
Cybersecurity firm Kaspersky has sounded the alarm after its researchers uncovered an updated and more sophisticated version of a notorious macOS malware strain known as MacSync, which is specifically designed to steal cryptocurrency holdings and sensitive login credentials from Apple computer users.
What Is MacSync?
MacSync is classified as an infostealer — a type of malicious software engineered to quietly infiltrate a victim's device and extract valuable personal and financial data without the user's knowledge. The latest iteration identified by Kaspersky researchers represents a significant evolution of the threat, suggesting that the cybercriminals behind it are actively refining their tools to become more effective and harder to detect.
According to the Kaspersky team, the updated malware is capable of targeting stored passwords, browser credentials, and digital wallet information, making it particularly dangerous for anyone who manages cryptocurrency assets on their Mac device.
Why macOS Users Should Be Concerned
There has long been a misconception that Apple's macOS operating system is largely immune to malware and cyberattacks. Security experts have repeatedly warned that this belief is outdated and dangerous. The emergence of updated threats like MacSync serves as a stark reminder that Mac users are increasingly being targeted by sophisticated cybercriminal operations.
- MacSync is capable of stealing stored browser usernames and passwords
- The malware targets cryptocurrency wallet data and private keys
- It operates discreetly, making detection difficult for the average user
- The updated version reflects active development by threat actors
Protecting Yourself
Cybersecurity professionals strongly advise macOS users to ensure their operating systems and all applications are kept up to date, as software patches frequently address security vulnerabilities that malware like MacSync exploits. Installing reputable security software and exercising caution when downloading applications from unverified sources are also essential steps in safeguarding personal data.
Kaspersky's discovery underscores the growing reality that no operating system is entirely beyond the reach of determined cybercriminals, and that vigilance remains the most important line of defence for all users.
For Sri Lankan users who increasingly rely on digital platforms for banking, investment, and cryptocurrency trading, the threat posed by infostealers such as MacSync is particularly relevant. Authorities and cybersecurity advocates continue to urge the public to adopt strong password practices, enable two-factor authentication, and remain alert to suspicious activity on their devices.
💬 Join the Discussion 4
See what readers are saying — and add your view.
how do we even know if we already infected? any way to check?
anyone using crypto on their laptop is asking for trouble honestly
mac users always think they safe, this is why la
exactly, apple tax paid and still getting hacked