New Infinity Stealer malware grabs macOS data via ClickFix lures

2026-03-29T07:23:28Z547c486fbd03231cbe54eb8ac20cc80d5fc05ab735a90e6b4c27df350cb0752b
active-exploitationcisacloud-breachcoruna-ioscredential-stealercve-2026-33017fake-vs-code-alertsgithubinfinity-stealerlangflowmacosnuitkaphishingpypisocial-engineeringsupply-chaintik tok phishingwav-steganographywindows-kb5079391xinbi

What happened

A batch of BleepingComputer reports covering multiple active threats and incidents: a new macOS info‑stealer called Infinity Stealer (Python payload packaged with Nuitka); a supply‑chain compromise of the Telnyx PyPI package delivering credential‑stealing malware hidden in a WAV file; large‑scale social‑engineering campaigns targeting developers via fake VS Code alerts on GitHub; CISA warning of active exploitation of a critical Langflow flaw (CVE-2026-33017) to hijack AI workflows; an ongoing investigation into an Amazon cloud account breach affecting the European Commission; several phishing

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
547c486fbd03231cbe54eb8ac20cc80d5fc05ab735a90e6b4c27df350cb0752b
Enrichment time
2026-03-29T07:23:28Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.