TODAY , 6 active exploits have been detected, including vulnerabilities in Ajax.NET, Red Hat Libuser, and Microsoft SQL Server. A newly identified macOS ClickFix malware campaign deceives users into executing malicious scripts through fake verification prompts, targeting macOS users and cryptocurrency holders. It utilizes a modular backdoor to deploy the Atomic macOS Stealer and cryptominers, stitching together persistent and evasive techniques that bypass standard defenses.
Researchers recommend strong user training and monitoring to combat this malware, particularly emphasizing the importance of not executing terminal commands from untrusted sources.