Newly discovered PamStealer isn't your typical macOS malware

2026-07-04T08:51:41Ze78769ef9b8299a8f2ddb06d875b16e88f0aac8f1378b044712dd43336db2d0f
amdbeets-earbuds-eavesdroppingcopilotcredential-theftcrypto-clipperinfostealerlinux-kernelmacosmass-breachmemory-encryptionoperation-endgamepackage-poisoningpamstealerpatchingpeopleSoftpost-quantum-cryptorussia-linked-actorssearchleaksecure-bootsignalsupply-chainusb-infectionuse-after-freewhatsappzero-day

What happened

Ars Technica's security roundup highlights a surge in high-impact intrusions and vulnerabilities: a new macOS infostealer (PamStealer) and self-propagating crypto malware (Crypto Clipper); multiple high‑severity/0‑day flaws including a critical PeopleSoft exploit, a Linux kernel use‑after‑free, and a Copilot/SearchLeak issue that exposed 2FA codes; a large breach leaking credentials for sensitive networks (Oracle, Lenovo, FedEx, NATO contractor, Fortinet); and supply‑chain/OSS poisoning incidents (credential‑stealing packages). The feed also covers strategic risks — US reward for groups behind

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
arstechnica_security
Record identifier
e78769ef9b8299a8f2ddb06d875b16e88f0aac8f1378b044712dd43336db2d0f
Enrichment time
2026-07-04T08:51:41Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · Newly discovered PamStealer isn't your typical macOS malware · Baitaphish