New Infinity Stealer malware grabs macOS data via ClickFix lures
2026-03-29T07:23:28Z•547c486fbd03231cbe54eb8ac20cc80d5fc05ab735a90e6b4c27df350cb0752b
active-exploitationcisacloud-breachcoruna-ioscredential-stealercve-2026-33017fake-vs-code-alertsgithubinfinity-stealerlangflowmacosnuitkaphishingpypisocial-engineeringsupply-chaintik tok phishingwav-steganographywindows-kb5079391xinbi
What happened
A batch of BleepingComputer reports covering multiple active threats and incidents: a new macOS info‑stealer called Infinity Stealer (Python payload packaged with Nuitka); a supply‑chain compromise of the Telnyx PyPI package delivering credential‑stealing malware hidden in a WAV file; large‑scale social‑engineering campaigns targeting developers via fake VS Code alerts on GitHub; CISA warning of active exploitation of a critical Langflow flaw (CVE-2026-33017) to hijack AI workflows; an ongoing investigation into an Amazon cloud account breach affecting the European Commission; several phishing
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- bleepingcomputer
- Record identifier
- 547c486fbd03231cbe54eb8ac20cc80d5fc05ab735a90e6b4c27df350cb0752b
- Enrichment time
- 2026-03-29T07:23:28Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.