Get the latest tech news
Criminals are taking advantage of macOS users’ need to resolve technical issues to get them to infect their machines with an infostealer
Criminals are taking advantage of macOS users' need to resolve technical issues to get them to run the Shamos infostealer.
To prevent macOS security features from blocking the installation, the malware peddlers are using the so-called ClickFix technique, which relies on users running malicious commands. Instead, they trigger the installation of Shamos – a variant of the Atomic macOS infostealer – when users copy, paste, and execute a specific one-line command in the Terminal app. The researchers have also spotted an additional malvertising campaign for delivering Shamos, in which the criminals set up a GitHub repository ostensibly providing the popular iTerm2 terminal emulator for download.
Or read this on r/apple