Cardano users warned of phishing emails pushing fake Eternl Desktop wallet installer

On January 3 2026, security researchers reported a phishing campaign targeting Cardano users with emails promoting a fake Eternl Desktop wallet. The attackers use a newly registered domain to distribute a malicious MSI installer that secretly bundles a remote management tool and enables unauthorized access. Victims who run the installer risk having their systems monitored and controlled remotely while believing they are installing a legitimate staking and governance wallet.