MEDIUM
ClickFix Attack Pushes macOS Infostealer For Crypto Theft
A Go-based infostealer is being distributed to macOS users through ClickFix- style social engineering lures. Once running, it harvests cryptocurrency wallet data, browser-stored passwords, Apple Keychain contents, and cached credentials. BleepingComputer reports the campaign is specifically targeting crypto theft. ClickFix attacks trick victims into pasting and running a malicious command themselves, typically via a fake verification prompt, bypassing many download-based defenses.