
Cybercriminals are disguising fake password managers as legitimate apps to deliver LastPass malware through fraudulent GitHub repositories. The attack targets macOS users with ClickFix attacks, tricking them into pasting malicious commands into Terminal. At the center of this campaign is AMOS malware (Atomic Stealer), a dangerous macOS malware designed to steal passwords, banking data, and […]
A record-shattering 16 billion fresh usernames and passwords leak—enough to unlock Apple IDs, Facebook profiles, Google accounts, GitHub repos, Telegram chats, and even government portals—were recently found sitting in 30 unsecured cloud databases, the largest of which holds 3.5 billion credentials. Cybernews researchers call the cache “a blueprint for mass exploitation,” warning that its clean […]
The ClickFix attack is a sophisticated phishing campaign that impersonates Booking.com to deliver infostealers and Remote Access Trojans (RATs) to hospitality workers. This phishing attack specifically targets individuals in hospitality organizations in North America, Oceania, South and Southeast Asia, and Northern, Southern, Eastern, and Western Europe, who are most likely to work with Booking.com. Attackers […]