New macOS security feature will alert users about possible ClickFix attacks
2026-03-30T20:52:00Z•5722626ffbe173e1cf330ce703a8d29187dbf6e5e558facd98705414051d573e
advanced-flowandroid-sideloadingbrowser-extensionclickfixdarkswordfake-app-storesfraud-bypassglassworminfiniti-stealerinfostealeriphone-exploit-chainmacosmalwaremessaging-hijackphishingpurehvncsignalsocial-engineeringsupply-chainvenom-stealervirtual-phoneswhatsapp
What happened
Malwarebytes Labs feed (Mar 16–30, 2026) highlights multiple active threats and defensive changes: Apple added a new macOS Tahoe (26.4+) protection to alert users to possible ClickFix social‑engineering attacks, after researchers documented Infiniti Stealer (formerly NukeChain) — a macOS infostealer that uses ClickFix and Python/Nuitka to trick users into running malicious commands. Other notable items: a fake Avast website distributing Venom Stealer, GlassWorm delivering surveillance via a fake browser extension, criminals renting virtual phones to bypass bank fraud checks, FBI/CISA warnings‑
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- malwarebytes_labs
- Record identifier
- 5722626ffbe173e1cf330ce703a8d29187dbf6e5e558facd98705414051d573e
- Enrichment time
- 2026-03-30T20:52:00Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.