MacSync Stealer, a macOS-focused information-stealing malware, has been linked to more than 30 rotating domains used for payload delivery, command-and-control (C2), and data exfiltration.
Earlier...
Cybercriminals are using fake Claude installation guides to infect Mac users with MacSync, a sophisticated information stealer and remote access trojan (RAT).
The campaign...
Coding agents such as Claude Code and Cursor are trusted, vendor-signed tools that developers use to open shells, edit files, call APIs, and install...
The operation relies on hundreds of look-alike domains, fake software-download pages, and Terminal commands designed to steal sensitive data from selected Mac users.
ClickFix...
DPRK-linked threat actors are abusing Ethereum smart contracts as resilient command-and-control infrastructure in a highly sophisticated macOS malware operation, signalling a new phase in...