news.mlab.sh
Back to the feed
threat-intel

Atomic MacOS (AMOS) stealer infection, (Sun, Aug 2nd)

High
Image: SANS Internet Storm Center
Summary

A researcher at the SANS Internet Storm Center identified an Atomic MacOS (AMOS) stealer infection campaign originating from a web page at getmacouscloud[.]com. The campaign involved tricking users into pasting malicious code into a Terminal window, which then installed the AMOS stealer. The malware collected credentials, browsing data, and other sensitive information from infected macOS hosts, utilizing a complex C2 infrastructure and various techniques to evade detection.

Read the full article at SANS Internet Storm Center

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.