Over 250 ClickFix Domains Use Browser Fingerprinting to Hide macOS Malware Lures
Microsoft Threat Intelligence has uncovered a macOS ClickFix operation that uses more than 250 front-end domains to distribute malware, including MacSync and…
Microsoft Threat Intelligence has uncovered a macOS ClickFix operation that uses more than 250 front-end domains to distribute malware, including MacSync and…
macOS 26.4, released on March 24, 2026, includes protections against ClickFix-style attacks, such as a confirmation prompt for Terminal when pasting commands…
Threat actors with ties to North Korea have been attributed to a sophisticated macOS malvertising campaign that involves redirecting users to fake…
chalk is a widely used npm package for terminal string styling. It was compromised alongside debug in the September 2025 supply chain…
Group-IB has identified a new macOS infostealer, ClickLock Stealer, that uses a coercive technique to force victims to enter their login password.…
The macOS Terminal app is used in the ClickFix technique of the DPRK malvertising campaign. Victims are tricked into pasting a malicious…