This report details recent activity associated with a macOS-focused "MacFinger ClickFix" campaign observed on September 29, 2026. The threat actor utilizes ClickFix techniques to deliver unidentified macOS malware, which notably differs from known families like AMOS Stealer.
The provided resources include network traffic captures (PCAPs), Indicators of Compromise (IOCs), and malware samples. Analysts are advised that the associated zip files are password-protected, following a specific scheme detailed on the source site's "about" page.
Top comments (0)