Utopia Tech
SecurityAI-assisted1 min read

ClickFix Attacks Deliver macOS Stealer That Can Drain Crypto Wallets

Cybercriminals are leveraging ClickFix-style social engineering attacks to distribute Go-based malware targeting macOS systems. The malware is designed to steal cryptocurrency wallet contents, browser passwords, Apple iCloud Keychain credentials, and cached authentication data through an infection chain that profiles the host system and delivers architecture-specific payloads.

UT

Utopia Tech

August 7, 2026 · 1 min read

Share

ClickFix-style attacks are being used to deliver a Go-based malware capable of stealing cryptocurrency assets, as well as browser-stored passwords, Apple iCloud Keychain data, and cached credentials. The macOS-focused infection chain is designed to deliver a shell script that profiles the host and then fetches a macOS malware payload that's compatible with the computer's CPU architecture. "

Originally published at thehackernews.com

Share
▸ Want a deeper look?

Talk to an architect about applying this to your stack.

60-minute technical evaluation, no obligation. We'll map the ideas in this article to your environment.

Skip to main content