CYFIRMA Research- SeedSnatcher: Dissecting an Android Malware Targeting Multiple Crypto Wallet Mnemonic Phrases

18/12/2025 4 min
CYFIRMA Research- SeedSnatcher: Dissecting an Android Malware Targeting Multiple Crypto Wallet Mnemonic Phrases

Listen "CYFIRMA Research- SeedSnatcher: Dissecting an Android Malware Targeting Multiple Crypto Wallet Mnemonic Phrases"

Episode Synopsis

Mobile Threat Alert: Crypto Mnemonic Phrase StealerSeedSnatcher is a newly uncovered Android malware family targeting the crypto ecosystem, built to steal users’ mnemonic recovery phrases using a sophisticated DisplayOverlay attackCapabilities:Intercepts and exfiltrates seed phrases and private keys from major cryptocurrency walletsPresents deceptive wallet-import screens to lure users into entering their recovery phrasesCommunicates with its command-and-control servers via encrypted WebSocket channelsAdditional Capabilities:Access device files and mediaRead SMS content and monitor messagesRetrieve call logs and contact listsCollect device identifiers, network data, and app detailsExfiltrate collected information to the C2 over encrypted channelsLink to the Research Report: SEEDSNATCHER : Dissecting an Android Malware Targeting Multiple Crypto Wallet Mnemonic Phrases - CYFIRMA#CyberSecurity #MobileSecurity #AndroidMalware #CryptoSecurity  #ThreatIntelligence #SeedSnatcher #ThreatAlert #CYFIRMA #CYFIRMAresearch#ExternalThreatLandscapeManagement #ETLMhttps://www.cyfirma.com/

More episodes of the podcast CYFIRMA Research