ShellCodeX Intelligence Brief
HIGH
Cybersecurity
ClickFix malware campaign delivers macOS Go stealer targeting crypto wallets
Source headline: ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets
Threat level
High
Signal strength
75/100
Source confidence
1 source
Published
2 hours ago
Intelligence Summary
ClickFix-style lures are being used to distribute a Go-based macOS stealer. The malware can extract cryptocurrency assets from users’ wallets and also target browser-stored credentials. It additionally attempts to collect Apple iCloud Keychain data and cached credentials on infected systems. The infection chain profiles the host and then downloads a macOS payload matched to the device CPU architecture. macOS users should avoid suspicious ClickFix-like links and keep systems and browsers updated.
Recommended Action
Review affected assets, schedule urgent remediation, and monitor related indicators.
Topics
Original reporting
The Hacker News
ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets
Open original source