Newly discovered PamStealer isn't your typical macOS malware
2026-07-04T08:51:41Z•e78769ef9b8299a8f2ddb06d875b16e88f0aac8f1378b044712dd43336db2d0f
amdbeets-earbuds-eavesdroppingcopilotcredential-theftcrypto-clipperinfostealerlinux-kernelmacosmass-breachmemory-encryptionoperation-endgamepackage-poisoningpamstealerpatchingpeopleSoftpost-quantum-cryptorussia-linked-actorssearchleaksecure-bootsignalsupply-chainusb-infectionuse-after-freewhatsappzero-day
What happened
Ars Technica's security roundup highlights a surge in high-impact intrusions and vulnerabilities: a new macOS infostealer (PamStealer) and self-propagating crypto malware (Crypto Clipper); multiple high‑severity/0‑day flaws including a critical PeopleSoft exploit, a Linux kernel use‑after‑free, and a Copilot/SearchLeak issue that exposed 2FA codes; a large breach leaking credentials for sensitive networks (Oracle, Lenovo, FedEx, NATO contractor, Fortinet); and supply‑chain/OSS poisoning incidents (credential‑stealing packages). The feed also covers strategic risks — US reward for groups behind
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- arstechnica_security
- Record identifier
- e78769ef9b8299a8f2ddb06d875b16e88f0aac8f1378b044712dd43336db2d0f
- Enrichment time
- 2026-07-04T08:51:41Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.