logo

Macs Under Siege: New Infostealers Spread via WhatsApp & Fake Apps

ID: 072d48c2-fa2b-5e3b-8fae-8d492ec11df1

STIX ID: report--072d48c2-fa2b-5e3b-8fae-8d492ec11df1

Feed Name: securityonline.info

Threat Score
72/100

Date Published: 2026-02-06

Date Updated: 2026-04-23

Author: Ddos

...
...

Microsoft Defender researchers report a surge in infostealer campaigns that have expanded beyond Windows into macOS and cross-platform tool abuse, detailing native macOS stealers (e.g., DigitStealer, MacSync, AMOS), a malicious PDF editor (Crystal PDF), and a Delphi-based worm (Eternidade) that leverages WhatsApp for propagation; attackers use fileless execution, AppleScript, Python automation, living-off-the-land techniques, and social engineering to harvest credentials, browser session data, keychain secrets, and developer artifacts.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.