North Korean Hackers Target macOS With New Crypto Malware

Palo Alto Networks Unit 42 uncovers a North Korean cyber campaign using a newly discovered macOS variant of Koi Stealer malware to target cryptocurrency developers through sophisticated social engineering tactics.
April 29, 2025
4 min read

About the Author

Adva Gabay

MacOS Research Team Lead

Adva Gabay is the leader of the macOS research team for Cortex XDR, focusing on low-level research, coverage, and detection initiatives. Her experience includes low-level and network research across various operating systems, specializing in macOS, as well as reverse engineering and the development of research tools for these platforms.

Daniel Frank

Threat Research Team Leader

Daniel Frank is the Threat Research Team Leader at Palo Alto Networks, with over a decade of experience. His core roles include researching emerging threats, reverse-engineering malware and threat hunting. Frank has showcased his research in different cybersecurity conferences over the years. He has a BSc degree in information systems.

Sign up for SecurityInfoWatch Newsletters
Get the latest news and updates.

Voice Your Opinion!

To join the conversation, and become an exclusive member of SecurityInfoWatch, create an account today!