Bybit Reports macOS Malware Attack Targeting Crypto Wallet Extensions

According to Bybit, the campaign redirects macOS users to a fake website and is designed to target more than 250 crypto wallet browser extensions while also monitoring Claude Code searches.

Summary

Bybit said it identified a malware campaign affecting macOS users that targets cryptocurrency wallet extensions and Claude Code searches. According to the company, the attack redirects victims to a fraudulent website and is aimed at more than 250 wallet extensions. The incident highlights a common crypto security risk in which attackers use fake sites and malware to capture wallet credentials or interfere with user activity on devices holding digital assets.

Terms & Concepts
  • Crypto wallet extension: A browser-based tool that lets users store keys and interact with blockchain applications directly from a web browser.
  • Malware: Malicious software designed to disrupt devices, steal data, or gain unauthorized access to systems and accounts.
  • Claude Code: An artificial intelligence coding assistant whose searches or activity were reportedly monitored in this attack, according to Bybit.