🔓 Data Breaches

Infiniti Stealer: macOS's Sneaky New Thief via Fake CAPTCHA and Terminal Tricks

Imagine pasting a 'CAPTCHA fix' into Terminal, only to hand your Mac's keys to hackers. Infiniti Stealer is here, blending old-school tricks with cutting-edge compilation to plunder browsers, wallets, and Keychain.

Fake CAPTCHA page dropping Infiniti Stealer payload on macOS Terminal

⚡ Key Takeaways

  • Infiniti Stealer uses ClickFix social engineering via fake CAPTCHAs to bypass macOS defenses without exploits. 𝕏
  • Nuitka-compiled Python makes the stealer native, evading typical detection and analysis. 𝕏
  • First documented macOS case blending ClickFix with Nuitka—predict more cross-platform threats ahead. 𝕏
Published by

Threat Digest

Threat intelligence. Zero noise.

Worth sharing?

Get the best Cybersecurity stories of the week in your inbox — no noise, no spam.

Originally reported by Malwarebytes Labs

Stay in the loop

The week's most important stories from Threat Digest, delivered once a week.