Product
high
advisory
SHub macOS Infostealer Variant 'Reaper' Spoofing Apple Security Updates
3 rules 5 TTPs 3 IOCsA new variant of the 'SHub' macOS infostealer, dubbed Reaper, uses AppleScript to display a fake security update message and install a backdoor, ultimately stealing browser data, financial documents, and cryptocurrency wallet information while bypassing Terminal-based mitigations in macOS.
Chrome +19
macos
infostealer
shub reaper
malware
3r
5t
3i
high
advisory
AMOS (Atomic macOS Stealer) Malware Targeting macOS Systems
3 rules 7 TTPsThe Atomic macOS Stealer (AMOS) is a prevalent malware-as-a-service targeting macOS, distributed via social engineering techniques like ClickFix ruses and fake installers, designed to steal sensitive data such as credentials and cryptocurrency wallets, leading to potential account compromise and further attacks.
Firefox +6
macos
amos
infostealer
3r
7t