Fake macOS Installers Distribute Information-Stealing Malware
Fraudulent software installers masquerading as legitimate macOS applications are being used to deploy infostealer malware that harvests credentials, browser cookies, and cryptocurrency wallet data. These deceptive packages represent a social engineering threat targeting macOS users who believe they are installing trusted software.
Why it matters in Western Canada: Western Canadian organizations in post-secondary, government, healthcare, and finance sectors with macOS-using staff are vulnerable to credential theft that could compromise corporate systems, Microsoft 365 accounts, and sensitive data access if employees unknowingly install these fake applications.
Summary generated from the original advisory. Read the full source: huntress
- Source
- https://www.huntress.com/blog/deceptive-installers-macos-infostealers
- CVEs
- None listed
- Tags
- malware, infostealer, macos, social-engineering, credential-theft
- Provenance
- mask2-ti-pipeline (AI-assisted, human-reviewable)