securityaffairs.com 8/14/2026, 9:27:24 AM · external

AmnesiaStealer macOS malware spreads via fake GitHub pages

AmnesiaStealer macOS malware spreads via fake GitHub pages
CyberSIXT Evidence Panel Source marked as original reporting

AMNESIASTEALER is a new macOS infostealer developed in Rust that targets users via counterfeit GitHub pages, utilizing a technique called ClickFix. The malware operates in three stages: it downloads and launches a payload, harvests sensitive information from the user's system, and ultimately provides attackers with live control over the victim's browser. During its operation, it captures passwords, cookies, and data from various applications, and can even manipulate browser sessions undetected.

The malware employs a stealth module to bypass security measures, and its infrastructure suggests a well-organized cyber operation rather than an isolated incident.

View full article

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline