New ClickLock macOS malware traps users into revealing login password

2026-07-17T01:23:31Z59840f034a1c887cfe7d839fce9ce0fc005039aef89740af72672c5b803a3913
23andMe settlement','Windows 11 end of supportAI abuseAnthropic ClaudeAsyncAPICISAChrome extensionClickLockCoca‑ColaFairlifeGemini CLIOkoBotOracle E‑Business SuiteScattered SpiderSpirals ransomwareStarland RATZoomaccount takeoveractively exploited vulnerabilitycryptocurrency theftinfo-stealermacOSnpmransomwaresupply chaintrojanized installers

What happened

A batch of high-impact security stories: a new macOS info-stealer called ClickLock tricks users into revealing their login password; a ransomware attack on Coca‑Cola’s Fairlife unit halted U.S. dairy production; CISA ordered federal agencies to patch an actively exploited critical Oracle E‑Business Suite vulnerability; Zoom disclosed a critical account‑takeover flaw; and malicious actors abused supply chains and AI tooling — AsyncAPI npm packages were published with an info‑stealing RAT, trojanized WebEx/Zoom installers pushed the Starland RAT, OkoBot framework deploys >20 payloads to steal ke

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
bleepingcomputer
Record identifier
59840f034a1c887cfe7d839fce9ce0fc005039aef89740af72672c5b803a3913
Enrichment time
2026-07-17T01:23:31Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.

Record · New ClickLock macOS malware traps users into revealing login password · Baitaphish