‘macOS is becoming a more attractive target, and the tools attackers use are becoming more capable and more professional’: Experts warn ‘convincing’ fake CleanMyMac installs target Apple users to empty crypto wallets



  • Fake CleanMyMac utility spreads SHub infostealer
  • Attack tricks users into pasting terminal commands
  • Malware steals credentials, crypto, and persists via backdoor

A fake utility program for macOs is tricking users into installing an infostealer malware which exfiltrates passwords, sensitive files, and even money, experts have warned.

Security researchers Malwarebytes said the program was a part of a wider, highly sophisticated campaign which also included a custom website, reputable brand spoofing, a loader, and the good old ClickFix approach.


https://cdn.mos.cms.futurecdn.net/JFKDCP2HdEKqSGJCkLNprB-1100-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

Leave a reply

Please enter your comment!
Please enter your name here

spot_imgspot_img