Newly discovered PamStealer isn't your typical macOS malware
2026-07-06T08:51:50Z•59e6e9a892e3647beaa4a662de1f0601eec100f65142e7f8deae8724e48917aa
2FA exposureBeats Studio BudsCopilotCrypto ClipperFedExFortinetLenovoLinux kernelOraclePamStealerPeopleSoftSearchLeakTorUSB propagationcredential thefteavesdroppinginfostealerlocal rootmacOSmalwaremassive breachpatches available? (update) ','Secure Boot keys deadline','postsupply chainuse-after-freezero-day
What happened
A wide-ranging Ars Technica security feed highlights a spike in high-impact threats and vulnerabilities: a new macOS infostealer dubbed PamStealer; Microsoft-detected Crypto Clipper — a USB-spreading, Tor‑communicating crypto‑theft backdoor; a widespread PeopleSoft zero-day used to steal gigabytes; a Linux kernel use‑after‑free leading to local root; and a critical Copilot/SearchLeak bug that exposed 2FA codes. Other notable items include a massive credentials breach affecting major vendors, supply‑chain malware in Microsoft packages, an exploitable USB‑connected speaker, Apple patching an e‑s
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- 59e6e9a892e3647beaa4a662de1f0601eec100f65142e7f8deae8724e48917aa
- Enrichment time
- 2026-07-06T08:51:50Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.