news
Breaking Cyber News From Cyberint
Breaking news feed of the latest cyber incidents, breaches, vulnerabilities, malware, ransomware and so much more.
- All Items
- Middle East
- Jobinfo
- Israel
- Handala
- Data Encrypted For Impact
- Asia
- Business Services
- Shelter Locations In Israel
- Cyber Fattah Team
- Retail
- Saudi Games
- Saudi Arabia
- Ben Horin & Alexandrovitz
- Zachary Levi And Sons - Construction
- Sivim It
- Government
- Kibbutz Almog
- Manufacturing
- Saban Brands Israel
- Mprest
- Digitalghost
- The Knesset
- Evil_Byte
- Nobitex
- Gonjeshke Darande
- Kimia Farma
- South-Eastern Asia
- Sentap
- exclusive
- Indonesia
- Chemicals And Allied Products
- Sweden
- Transportation
- Hensi
- Northern Europe
- Europe
- Scania
- Media
- Tbn Israel
- Weizmann Institute Of Science
- Education
- Resistancetrench
- Israeli Air Force
- Israel Antiquities Authority
- Dienet
- North America
- Mirai
- United States
- Cve-2025-24016
- CVE-2025-24016
- Wazuh
- Clayoxtymus1337
- Epsilor Electric Fuel
- Technology
- Southern Asia
- Advanced Weapons And Equipment India
- India
- More_Eggs
- Fin6
- Cryptocurrency
- Alex Lab
- United Kingdom
- Critical Infrastructures
- Edf Energy
- Zoldyck
- Telecommunications
- Disable Or Modify Tools
- Sudo And Sudo Caching
- Match Legitimate Name Or Location
- Spectrum
- Credentials In Files
- Ingress Tool Transfer
- Spearphishing Link
- Amos
- Unix Shell
- Israel Defense Forces
- Ghna
- Food And Kindred Products
- Coca-Cola Europacific Partners
- Southern Europe
- Italy
- Automotive
- Locauto
- Spain
- Whitecoat
- Mercadona
- Healthcare
- Ups
- Wow Health Solutions
- Rip_Real_World
- Cyprus Airways
- Netsupport Rat
- Illeak
- Tel Aviv University
- Desec0X
- Lucky_Gh0$T
- Cyberlock
- Chaos
- Unc6032
- Numero
- Yashma
- Deloitte
- 303
- Gucci
- Exfiltration Over C2 Channel
- Drive-By Compromise
- Data From Local System
- Windows Credential Manager
- Input Capture
- Credentials From Web Browsers
- Command And Scripting Interpreter
- Screen Capture
- Password Managers
- Virtualization/Sandbox Evasion
- Phishing
- Eddiestealer
- Obfuscated Files Or Information
- User Execution
- System Information Discovery
- Credentials From Password Stores
- File And Directory Discovery
- Australia And New Zealand
- Superloop
- W_Tchdogs
- Australia
- Lateral Tool Transfer
- Deploy Container
- Exploit Public-Facing Application
- Network Service Discovery
- Exploitation For Client Execution
- Escape To Host
- Smb/Windows Admin Shares
- Web Protocols
- External Remote Services
- Resource Hijacking
- Remote System Discovery
- Change Default File Association
- Docker
- Cameleon
- Venom Rat
- Romania
- Eastern Europe
- Bitdefender
- Financial Theft
- Macao Special Administrative Region
- Vicioustrap
- CVE-2023-20118
- Cisco
- Eastern Asia
- Cve-2023-20118
- CVE-2025-0944
- Trimble
- Uat-6382
- Tetraloader
- Cve-2025-0944
- Regsvr32
- Rundll32
- Silver Fox
- Masquerade Task Or Service
- Malicious File
- File Deletion
- Powershell
- China
- Dynamic-Link Library Injection
- Reflective Code Loading
- Scheduled Task
- Obfuscated Files Or Information: Encrypted Or Encoded Data
- Process Discovery
- Valleyrat
- Qakbot
- Warmcookie
- Danabot
- Bumblebee
- Trickbot
- Cetus
- Purehvnc
- Bytebreaker
- Mexico
- Telcel
- Viralgod
- Latin America And The Caribbean
- Peter Green Chilled
- Cellcom
-
Jun 10, 2025
New Clickfix Infostealer Campaign Targets macOS Users
Cybersecurity researchers have identified a new malware campaign that uses social engineering tactics to distribute an information stealer known as Atomic macOS Stealer (AMOS) targeting Apple macOS systems. The campaign employs typosquatting domains that mimic the U.S.-based telecom provider Spectrum, tricking users into executing a malicious shell script that steals system passwords and downloads the AMOS variant. The attack begins on a fake webpage that prompts users to complete a CAPTCHA verification, ultimately leading them to execute harmful commands under the guise of fixing a non-existent issue. The campaign is believed to be orchestrated by Russian-speaking cybercriminals, as indicated by the presence of Russian language comments in the malware's code.