Fake AI Tools Used to Spread Noodlophile Crypto Wallet Stealing Malware

Summary

Fake AI tools are being used to spread the Noodlophile malware, which steals browser credentials, cryptocurrency wallet information, and other sensitive data. Attackers create convincing AI-themed platforms advertised through Facebook groups and social media campaigns to trick users into downloading the malware. Posts on these platforms can reach up to 62,000 views. Users are misled into downloading a malicious ZIP archive, VideoDreamAI.zip, which deploys the Noodlophile Stealer. This malware is sometimes bundled with remote access trojans like XWorm. The malware is believed to originate from Vietnam, with cybercrime prevalent in Southeast Asia.