Post
MEDIUM

ClickFix Attack Pushes macOS Infostealer For Crypto Theft

· malware · phishing

A Go-based infostealer is being distributed to macOS users through ClickFix- style social engineering lures. Once running, it harvests cryptocurrency wallet data, browser-stored passwords, Apple Keychain contents, and cached credentials. BleepingComputer reports the campaign is specifically targeting crypto theft. ClickFix attacks trick victims into pasting and running a malicious command themselves, typically via a fake verification prompt, bypassing many download-based defenses.