news.mlab.sh
41 results
threat-intel

Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure

Microsoft has linked over 30 web domains to MacSync Stealer, a macOS information stealer, after observing recurring network behaviors and endpoint activity. The malware uses various techniques, including AppleScript, to collect sensitive data like credentials, browser history, and SSH keys, and then exfiltrates it thro…

The Hacker News · Aug 19, 2026 High
threat-intel

Atomic MacOS (AMOS) stealer infection, (Sun, Aug 2nd)

A researcher at the SANS Internet Storm Center identified an Atomic MacOS (AMOS) stealer infection campaign originating from a web page at getmacouscloud[.]com. The campaign involved tricking users into pasting malicious…

SANS Internet Storm Center · Aug 2, 2026 High