www.infosecurity-magazine.com 8/10/2026, 10:20:22 AM · external

New macOS malware steals crypto via fake CAPTCHA tricks

New macOS malware steals crypto via fake CAPTCHA tricks
CyberSIXT Evidence Panel
Primary Source huntress.com
Threat Actor
Aeza Group

RESEARCHERS identified a new type of macOS malware designed to steal cryptocurrency and personal information. This malware is delivered through ClickFix social engineering attacks, manipulating users into executing malicious commands via a fake CAPTCHA prompt. The malware collects system details and scrapes browser passwords and Apple Keychain data, specifically targeting cryptocurrency wallets for theft. The exploitation method links back to the Aeza Group, a sanctioned Russian entity involved in cybercrime.

Prevention measures recommended include user education and browser add-ons to block malicious scripts, as well as immediate reporting to IT if an attack is suspected.

View Primary Source Via www.infosecurity-magazine.com

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline