The post Private Key Theft Becomes Industrialized, Galaxy’s GK8 Warns appeared on BitcoinEthereumNews.com. Private key theft is no longer just another way hackers attack crypto users — it has become a full-fledged business, according to GK8, a crypto custody expert owned by Mike Novogratz’s crypto investment platform Galaxy Digital. In a report published Monday, GK8 detailed how private key theft has evolved into an industrialized operation, highlighting the rise of black market tools that allow perpetrators to locate and steal someone’s seed phrase. The study pointed to several tools, such as malware infostealers and seed phrase finders, that can scan files, documents, cloud backups and chat histories to quickly extract a user’s private key, effectively giving attackers full control over their assets. “For the crypto industry, using secure custody, implementing multi-step approval processes, and enforcing role separation are essential to mitigating the risk posed by this commercialized and constantly evolving threat,” the report states. It all starts with malware According to GK8, private key theft is a multi-stage process that usually begins with hackers using malware to steal large amounts of data from an infected device. Threat actors then feed the stolen data into automated tools that rebuild seed phrases and private keys. After identifying wallets containing valuable assets, attackers assess the security measures to drain the funds. “These applications perform high-precision mnemonic parsing, transforming raw logs into keys, and are sold for hundreds of dollars on darknet forums,” GK8 revealed in the report. Seed phrase parser tools on the black market. Source: GK8 by Galaxy Malware infostealers, a type of malware designed to silently harvest data from victims’ devices, have been on the rise in recent years, and macOS users are not immune, according to the cybercrime threat intelligence firm Kela. Source: Kela “Once considered relatively safe due to Apple’s built-in protections, macOS devices are still a target for cybercriminals,” Kela said… The post Private Key Theft Becomes Industrialized, Galaxy’s GK8 Warns appeared on BitcoinEthereumNews.com. Private key theft is no longer just another way hackers attack crypto users — it has become a full-fledged business, according to GK8, a crypto custody expert owned by Mike Novogratz’s crypto investment platform Galaxy Digital. In a report published Monday, GK8 detailed how private key theft has evolved into an industrialized operation, highlighting the rise of black market tools that allow perpetrators to locate and steal someone’s seed phrase. The study pointed to several tools, such as malware infostealers and seed phrase finders, that can scan files, documents, cloud backups and chat histories to quickly extract a user’s private key, effectively giving attackers full control over their assets. “For the crypto industry, using secure custody, implementing multi-step approval processes, and enforcing role separation are essential to mitigating the risk posed by this commercialized and constantly evolving threat,” the report states. It all starts with malware According to GK8, private key theft is a multi-stage process that usually begins with hackers using malware to steal large amounts of data from an infected device. Threat actors then feed the stolen data into automated tools that rebuild seed phrases and private keys. After identifying wallets containing valuable assets, attackers assess the security measures to drain the funds. “These applications perform high-precision mnemonic parsing, transforming raw logs into keys, and are sold for hundreds of dollars on darknet forums,” GK8 revealed in the report. Seed phrase parser tools on the black market. Source: GK8 by Galaxy Malware infostealers, a type of malware designed to silently harvest data from victims’ devices, have been on the rise in recent years, and macOS users are not immune, according to the cybercrime threat intelligence firm Kela. Source: Kela “Once considered relatively safe due to Apple’s built-in protections, macOS devices are still a target for cybercriminals,” Kela said…

Private Key Theft Becomes Industrialized, Galaxy’s GK8 Warns

Private key theft is no longer just another way hackers attack crypto users — it has become a full-fledged business, according to GK8, a crypto custody expert owned by Mike Novogratz’s crypto investment platform Galaxy Digital.

In a report published Monday, GK8 detailed how private key theft has evolved into an industrialized operation, highlighting the rise of black market tools that allow perpetrators to locate and steal someone’s seed phrase.

The study pointed to several tools, such as malware infostealers and seed phrase finders, that can scan files, documents, cloud backups and chat histories to quickly extract a user’s private key, effectively giving attackers full control over their assets.

“For the crypto industry, using secure custody, implementing multi-step approval processes, and enforcing role separation are essential to mitigating the risk posed by this commercialized and constantly evolving threat,” the report states.

It all starts with malware

According to GK8, private key theft is a multi-stage process that usually begins with hackers using malware to steal large amounts of data from an infected device.

Threat actors then feed the stolen data into automated tools that rebuild seed phrases and private keys. After identifying wallets containing valuable assets, attackers assess the security measures to drain the funds.

“These applications perform high-precision mnemonic parsing, transforming raw logs into keys, and are sold for hundreds of dollars on darknet forums,” GK8 revealed in the report.

Seed phrase parser tools on the black market. Source: GK8 by Galaxy

Malware infostealers, a type of malware designed to silently harvest data from victims’ devices, have been on the rise in recent years, and macOS users are not immune, according to the cybercrime threat intelligence firm Kela.

Source: Kela

“Once considered relatively safe due to Apple’s built-in protections, macOS devices are still a target for cybercriminals,” Kela said in a report published Nov. 10, stating that macOS infostealer activity “appears to be peaking in 2025.”

How users can protect themselves

Amid rising private key hacks, users can protect themselves by assuming all local device data could be compromised, never storing seed phrases in digital form, using multiparty approval for transactions and relying on secure custody systems, GK concluded in its report.

“A healthy combination of hot, cold, and impenetrable vault storage is necessary to minimize the asset value exposed to an immediate drain,” GK8 said.

Source: Kela

Kela warned that malware infostealers often rely on social engineering, using fake installers, poisoned ads, or phishing campaigns to trick users.

Related: Arthur Hayes tells Zcash holders to withdraw from CEXs and ‘shield’ assets

“To stay safe, users should be extremely careful with attachments and links, avoid software from untrusted sources, and resist scams that exploit macOS’ reputation for security,” Kela said.

The firm also stressed the importance of strong, unique passwords for financial apps, enabling multifactor authentication and keeping macOS and all applications up to date to prevent malware from stealing sensitive information.

Magazine: Saylor denies Bitcoin sell-off, XRP ETF debut tops chart: Hodler’s Digest, Nov. 9 – 15

Source: https://cointelegraph.com/news/crypto-private-key-theft-big-business-what-to-know?utm_source=rss_feed&utm_medium=feed&utm_campaign=rss_partner_inbound

Market Opportunity
RISE Logo
RISE Price(RISE)
$0.003856
$0.003856$0.003856
+0.81%
USD
RISE (RISE) Live Price Chart
Disclaimer: The articles reposted on this site are sourced from public platforms and are provided for informational purposes only. They do not necessarily reflect the views of MEXC. All rights remain with the original authors. If you believe any content infringes on third-party rights, please contact service@support.mexc.com for removal. MEXC makes no guarantees regarding the accuracy, completeness, or timeliness of the content and is not responsible for any actions taken based on the information provided. The content does not constitute financial, legal, or other professional advice, nor should it be considered a recommendation or endorsement by MEXC.

You May Also Like

XRP Confirms Downtrend After $1.50 Breakdown, with $1.15 in Focus

XRP Confirms Downtrend After $1.50 Breakdown, with $1.15 in Focus

XRP price is currently trading near $1.44 on Sunday, February 8, after dipping to $1.21 earlier in the week. The price has been declining from its high near $1.
Share
Tronweekly2026/02/08 21:17
Will Bitcoin Crash Again After Trump Insider Whale Dumps 6,599 BTC?

Will Bitcoin Crash Again After Trump Insider Whale Dumps 6,599 BTC?

Trump insider Garrett Jin moves 6,599 BTC to Binance, raising concerns about more Bitcoin sell pressure as market sentiment weakens. Bitcoin has seen a turbulent
Share
LiveBitcoinNews2026/02/08 21:30
BitGo offers regulated trading services for European institutions

BitGo offers regulated trading services for European institutions

The post BitGo offers regulated trading services for European institutions appeared on BitcoinEthereumNews.com. Key Takeaways BitGo has launched regulated trading services in Europe after receiving approval from German regulator BaFin. The new service offers European institutions a platform that combines asset custody, trade execution, and aggregated liquidity. BitGo launched regulated trading services for European institutions today, following approval from German financial regulator BaFin. The digital asset infrastructure company now offers European institutional clients access to trading services that combine custody, execution and aggregated liquidity. BitGo Europe said the platform provides infrastructure for institutional participation in digital asset markets. The services target European institutions seeking regulated access to crypto trading through a single platform that integrates multiple functions including asset custody and trade execution. Source: https://cryptobriefing.com/bitgo-regulated-trading-europe-bafin-approval/
Share
BitcoinEthereumNews2025/09/18 06:25