A ClickFix social-engineering campaign is targeting macOS users with fake CAPTCHA or verification prompts that instruct victims to copy and paste commands into Terminal. The pasted command downloads a malicious .dmg, mounts it invisibly, and launches an app or installer that deploys Atomic macOS Stealer (AMOS). The activity relies on user manipulation rather than a software vulnerability, marking an expansion of ClickFix-style lures onto Apple systems.
Once installed, AMOS steals browser credentials, cookies, payment data, files, Apple ecosystem data, messaging-app content, and cryptocurrency wallet information from targets including Safari, Apple Notes, Apple Keychain, Telegram, Discord, and wallet-related browser extensions. Reports say the malware can also show a fake macOS authentication prompt to gain elevated access, archive stolen data into a ZIP file, and exfiltrate it to attacker-controlled servers; in some cases it also replaces legitimate Ledger Wallet and Trezor Suite applications with trojanized versions to enable further theft.

Mallory correlates global threat intelligence with your attack surface — know if you’re exposed before adversaries strike.
3 events from the most recent confirmed update back to the earliest known activity.
Kaspersky reported that AMOS can replace legitimate Ledger Wallet and Trezor Suite applications with malicious versions to facilitate further theft. The reporting also highlighted the campaign's broader targeting of Safari, Apple Notes, Apple Keychain, Telegram, Discord, and crypto wallets.
One documented payload delivered through the macOS ClickFix chain is Atomic macOS Stealer (AMOS). After installation, it steals browser and Apple ecosystem data, files, messaging-app data, credentials, and cryptocurrency wallet information, then archives and exfiltrates the data to attacker-controlled servers.
A social-engineering campaign began targeting macOS users with fake CAPTCHA or verification prompts that trick victims into copying and executing malicious commands in Terminal. The command downloads a hidden DMG and launches malware without exploiting a software vulnerability.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
2 references tracked. Mallory keeps watching after this page renders.
cybersecuritynews.com
Open sourcekaspersky.com
Open sourceMap indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.