Fake Claude App Distributes RevStealer Malware Built To Steal Crypto And Credentials

NewsTue, 01 Sep 2026 19:14:28 UTC2 hours ago

fake desktop application impersonating the artificial intelligence assistant Claude is being used to distribute RevStealer, a Windows malware designed to steal cryptocurrencies, passwords and browser data.

According to a report published by cybersecurity firm Morphisec, the primary attack vector is a fraudulent project called “Claude Opus 5 Free Desktop” that impersonates Anthropic, the company behind the model, promising free access to the service.

RevStealer is designed to leave as little trace as possible. It scans browser databases, cookies, password manager records, VPN and remote access configurations, messaging data, screenshots and selected documents. It also targets more than 50 cryptocurrency wallets.

Before activating its malicious payload, the fake Claude verifies whether the machine belongs to a real user by analyzing available memory, processor cores, hostname, username and graphics hardware. If it detects conditions typical of an analysis environment, it halts the infection without proceeding to later stages.

… Continue reading the full article at the original source below.

Read from Source · crypto-economy.com ↗
This content is automatically aggregated. Full credit goes to the original publisher (crypto-economy.com).

Related