logo

Fake AI Tools Used to Spread Noodlophile Crypto Wallet Stealing Malware

By: bitcoin ethereum news|2025/05/14 03:15:04
0
Share
copy
In brief Cybercriminals are using fake AI tools on social media to spread Noodlophile malware. Malicious platforms trick users into downloading ZIP archives that steal sensitive data. Noodlophile stealer, which researchers suspect originated in Vietnam, can include additional remote access trojans. People are being tricked into downloading fake AI tools as a way to spread the information stealer malware Noodlophile. This malware is able to harvest browser credentials, cryptocurrency wallet information and more sensitive data, according to a security researcher. Morphisec researcher Shmuel Uzan said, in a report, “Instead of relying on traditional phishing or cracked software sites, they build convincing AI-themed platforms – often advertised via legitimate-looking Facebook groups and viral social media campaigns.” The attackers build convincing AI themed platforms which can then be advertised on Facebook groups or social media campaigns. While these may look legitimate, they are simply fronts to get people to download the malware hidden in what appears to be AI tools. These sorts of posts, shared on Facebook, have reached views as high as 62,000, from a single post alone. Some of the fake social media pages identified are: Luma Dreammachine AI, Luma Dreammaching and gratistuslibros. Once a user clicks on a post they are taken to apparently free AI editing tools and urged to upload their image or video. They are then asked to download what looks like the AI tool, but is actually a malicious ZIP archive called VideoDreamAI.zip. This leads to a Python binary paving the way to deploy the Noodlophile Stealer. Some instances have also seen the data stealer bundled with remote access trojans like XWorm, for more control over the host’s machine and data. The Noodlophile malware is assessed to be of Vietnamese origin, according to a GitHub profile that claims to be that of “a passionate Malware Developer from Vietnam.” Authorities have said that cybercrime is especially prevalent in Southeast Asia and there is a history of distributing stealer software using the Facebook platform specifically. Edited by Stacy Elliott. Daily Debrief Newsletter Start every day with the top news stories right now, plus original features, a podcast, videos and more. Source: https://decrypt.co/318983/fake-ai-tools-crypto-wallet-malware-noodlophile

You may also like

Refutation of Yang Haipo's "The End of Cryptocurrency"

This may be the true test of cryptocurrency. It's not about whether the price has reached a new high, nor about who will achieve financial freedom in the next bull market, but rather whether, after all the grand narratives have been washed away by cycles, it can still leave behind some simpler, more...

Can a hairdryer earn $34,000? Interpreting the reflexivity paradox of prediction markets

Prediction markets are essentially betting on reality, and when participants can access or even influence this path earlier, the market no longer just reflects reality but begins to shape it in return.

6MV Founder: In 2026, the "landmark turning point" for crypto investment has arrived

"I will deploy funds in 2026, so I will tell you this is the best year in history."

Abraxas Capital Mints $2.89 Billion USDT: Liquidity Boost or Just More Stablecoin Arbitrage?

Abraxas Capital just received $2.89 billion in freshly minted USDT from Tether. Is this a bullish liquidity injection for crypto markets, or is it business as usual for a stablecoin arbitrage giant? We analyze the data and the likely impact on Bitcoin, altcoins, and DeFi.

A VC from the Crypto world said AI is too crazy, and they are very conservative

Amid the Crypto frenzy and with investors who once missed out on Pinduoduo, a new AI fund called Impa Ventures was established, rejecting bubble narratives and adhering to a conservative "problem-first" strategy to seek real business value.

The Evolutionary History of Contract Algorithms: A Decade of Perpetual Contracts, the Curtain Has Yet to Fall

The ten-year evolution of perpetual contracts: from pulling the plug on 312 to the shocking short squeeze of TRB, a deep dive into the pricing machine that averages $200 billion daily, written with countless liquidations and real money, detailing the blood and tears of risk control theory.

Popular coins

Latest Crypto News

Read more