macOS

MacSync Stealer Uses 30+ Rotating Domains to Steal macOS Credentials and Exfiltrate Data

MacSync Stealer, a macOS-focused information-stealing malware, has been linked to more than 30 rotating domains used for payload delivery, command-and-control (C2), and data exfiltration. Earlier...

Hackers Use Fake Claude Guide to Steal Mac Passwords and Hijack Crypto Wallet Apps

Cybercriminals are using fake Claude installation guides to infect Mac users with MacSync, a sophisticated information stealer and remote access trojan (RAT). The campaign...

Coding-Agent Tunnel Traffic Can Look Almost Identical to Command-and-Control Check-Ins

Coding agents such as Claude Code and Cursor are trusted, vendor-signed tools that developers use to open shells, edit files, call APIs, and install...

macOS ClickFix Campaign Uses Browser Fingerprinting to Deliver Atomic Stealer Malware

The operation relies on hundreds of look-alike domains, fake software-download pages, and Terminal commands designed to steal sensitive data from selected Mac users. ClickFix...

DPRK Hackers Use EtherHiding Smart Contracts as Resilient Malware Command Channels

DPRK-linked threat actors are abusing Ethereum smart contracts as resilient command-and-control infrastructure in a highly sophisticated macOS malware operation, signalling a new phase in...

Popular

Subscribe