NimDoor Malware - Remove Spyware & Malware with SpyHunter - EnigmaSoft Ltd
Summary
Security researchers uncovered NimDoor, a new macOS malware family that uses stealthy persistence and data theft techniques. The campaign targets Web3 and cryptocurrency organizations and appears to be linked to North Korean threat actors. The malware uses process injection, encrypted WebSocket communications, and signal-handler-based persistence to survive termination attempts. Attackers lure victims through social engineering on Telegram, Calendly, and fake Zoom update emails, then steal browser and Telegram credentials. The analysis also highlights how the Nim programming language helps the attackers build compact, harder-to-detect binaries.
Classifications
industries
Entertainment
applications
Customer Service & Support
AskAI Classifications
Labels
Cybersecurity Software
Anti-Malware Software
SaaS Security
Linked Companies
EnigmaSoft
$1M to $5M