ClickFix attack pushes macOS infostealer for crypto theft attacks

Summary

A new Go-based malware named ClickFix is targeting macOS users to steal cryptocurrency assets. It achieves this by compromising browser-stored passwords, Apple Keychain data, and cached credentials.

IFF Assessment

FOE

This malware actively steals sensitive information and cryptocurrency from users, posing a direct threat to their digital assets.

Defender Context

This highlights a growing trend of macOS-specific malware focused on financial gain. Defenders should monitor for new macOS infostealers and educate users about secure credential management and avoiding suspicious software downloads.

Read Full Story →