Connect with us

Tech

Everything you need to know about the malware stealing data from Mac users

Published

on

MacBook in the dark using Terminal

Mac users have a new malware threat to be on the watch out for.

According to a new report by Malwarebytes, Infiniti Stealer is a new malware attack targeting Mac users that utilizes social engineering tactics and, once the payload is delivered to the device, is very difficult to detect.

Infiniti Stealer

The hacker's campaign, according to the report, begins with a social engineering technique known as ClickFix. ClickFix is a tactic that tricks the target themself into executing malicious code on their computer.

The targeted user is presented with a website, often through a phishing email or a pop-up on a compromised page, with an urgent update warning that claims to require the user to complete a Cloudflare human verification captcha.

The target is presented with a traditional "I am not a robot" box to check. However, the target is also asked to complete a "manual step." The page instructs the user to go to Spotlight on their Mac and search for the Terminal app. They are then instructed to paste a provided code into Terminal and hit return.

This code delivers Infiniti Stealer to the target's Mac.

"Because the user runs the command directly, many traditional defenses are bypassed," Malwarebytes says in its report. "There’s no exploit, no malicious attachment, and no drive‑by download."

According to Malwaybytes, the malware that's delivered to the victim's Mac is written in Python but compiled with Nuitka, which creates a native macOS binary. This makes Infiniti Stealer much more difficult to analyze and detect than the more typical type of malware.

"To our knowledge, this is the first documented macOS campaign combining ClickFix delivery with a Nuitka-compiled Python stealer," Malwarebytes says.

Once Infiniti Stealer is installed on a device, it will attempt to steal data from the victim's Mac and upload that information to the attacker's own server. Passwords, screenshots, browser data like cookies, and other sensitive information can be stolen from victims in these types of malware attacks.

Be aware of malware threats

Users should always be careful when following instructions from a website that they are unfamiliar with. Even then, users should be careful they are on a legitimate website of a company they do recognize and not a phishing website run by a bad actor.

Users should be aware that there is no form of captcha or verification that requires code to be entered in the Terminal app.

Furthermore, I typically recommend that anyone who isn't somewhat familiar with code to avoid any process that requires entering code in their Mac's Terminal.

If a user believes they may have been infected with malware, Malwarebytes recommends that they stop using the affected computer. They should change their account passwords on a completely separate device and, if possible, revoke access from the infected computer.

Infiniti Stealer appears to follow a new trend of bad actors targeting Apple devices due to the incorrect perception that they are immune from viruses and other types of attacks. DarkSword, for example, is another new threat targeting iPhones and other iOS devices with a malware attack that doesn't even require a user to download any sort of malicious file.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Tech

New floating internet infrastructure takes flight

Published

on

By

HAPS, 5G, sceye

Sceye’s High-Altitude Platform System has completed endurance testing, marking a step toward wider deployment. The floating infrastructure aims to deliver internet from the stratosphere. Here’s what this means for the future of connectivity.

Continue Reading

Tech

T-Mobile is giving away the Apple iPhone 17 for free — how to claims yours this weekend

Published

on

By

Apple iPhone 17 on Mashable background

TL;DR: Get a free iPhone 17e when signing up for a T-Mobile plan with no trade-in required. You can also get the iPhone 17 for free from T-Mobile when signing up for an Experience More plan and trading in an eligible device.



Apple iPhone 17

Credit: Apple

In the mobile carrier world, "free" is a word that usually comes with a whole lot of catches. Free deals usually force you into a premium plan and demand you trade in a pristine flagship phone to qualify for the discount. However, T-Mobile’s latest offer for the iPhone 17e is surprisingly straightforward.

For a limited time, you can score the newly-released iPhone 17e for free by simply opening a new line with T-Mobile. The standout feature of this deal? You don't need a trade-in. T-Mobile is covering the full $599 retail price of the iPhone 17e via 24 monthly bill credits.

Want something with a little more power? You can also pick up the iPhone 17 for free from T-Mobile when signing on for 24 months of an Experience More plan and trading in an eligible phone. This deal gets you unthrottled 5G data, 4K streaming, and heaps of international roaming, but it's does fall into that standard trade-in/premium plan category of free deal.

You might not need to upgrade to the iPhone 17, because the iPhone 17e packs a serious punch. It utilizes the same A19 chip found in the standard iPhone 17, meaning it’s fully compatible with the latest Apple Intelligence features. As Mashable’s Stan Schroeder notes in his first-hand look: "The combination of having Apple's latest chip and a decent amount of storage means this phone will be relevant for at least four to five years." So it sounds like you've covered for the forseeable future with this budget-friendly handset.

We should point out that you still need to pay taxes on the full retail price upfront, plus a $35 device connection fee. And, of course, you’re locked into a data plan for two years. But you've got a shiny new iPhone 17, so you're still winning.

Score an iPhone 17e for free at T-Mobile this weekend.

Continue Reading

Tech

Where can you stream Something Very Bad Is Going to Happen?

Published

on

By

Camila Morrone in

Horror series Something Very Bad Is Going to Happen delivers atmospheric thrills and chills by the bucketful, so if you haven't already checked it out, consider this your sign to add it to your watchlist.

Created by Haley Z. Boston (Brand New Cherry Flavor) and executive produced by Stranger Things creators the Duffer Brothers, the eight-episode miniseries is now streaming on Netflix. It premiered March 26 and pulled in 28.3 million hours viewed in its first week, according to Netflix. It's remained in Netflix's top 10 series globally every week since its release, although as of this writing, it no longer appears on Netflix's top 10 TV shows carousel.

The series follows engaged couple Rachel Harkin (Camila Morrone) and Nicky Cunningham (Adam DiMarco) in the week leading up to their wedding at Nicky's parents' remote cabin. As their special day approaches, Rachel can't shake the feeling that — you guessed it — something very bad is going to happen. (Maybe the remote cabin should have been the first red flag.)

Based on Nicky's off-putting family, you may expect that "something very bad" to look like something out of Ready or Not, where a filthy rich family turns on their newest addition. But Something Very Bad Is Going to Happen takes a different turn, looping in strange curses and family trauma to examine anxieties around marriage and finding the perfect soulmate.

The carnage that follows certainly lives up to the show's title, creating one of the most engrossing Netflix binges of 2026.

Something Very Bad Is Going to Happen is now streaming on Netflix.

Continue Reading

Trending