New Infinity Stealer malware grabs macOS data via ClickFix lures

Summary

A new info-stealing malware called Infinity Stealer is targeting macOS devices by using the Nuitka compiler to package a Python payload. It spreads through malicious applications disguised as system utilities, often delivered via ClickFix lures.

IFF Assessment

FOE

This is bad news for defenders as a new info-stealer actively targets macOS with a stealthy delivery mechanism.

Defender Context

Defenders should be aware of new macOS malware like Infinity Stealer, especially its use of Python payloads and common lure tactics. End-users should be trained to be cautious of unexpected application installations and prompts, particularly those disguised as system fixes.

Read Full Story →