New macOS security feature will alert users about possible ClickFix attacks

2026-03-30T20:52:00Z5722626ffbe173e1cf330ce703a8d29187dbf6e5e558facd98705414051d573e
advanced-flowandroid-sideloadingbrowser-extensionclickfixdarkswordfake-app-storesfraud-bypassglassworminfiniti-stealerinfostealeriphone-exploit-chainmacosmalwaremessaging-hijackphishingpurehvncsignalsocial-engineeringsupply-chainvenom-stealervirtual-phoneswhatsapp

What happened

Malwarebytes Labs feed (Mar 16–30, 2026) highlights multiple active threats and defensive changes: Apple added a new macOS Tahoe (26.4+) protection to alert users to possible ClickFix social‑engineering attacks, after researchers documented Infiniti Stealer (formerly NukeChain) — a macOS infostealer that uses ClickFix and Python/Nuitka to trick users into running malicious commands. Other notable items: a fake Avast website distributing Venom Stealer, GlassWorm delivering surveillance via a fake browser extension, criminals renting virtual phones to bypass bank fraud checks, FBI/CISA warnings‑

Why it matters

A reviewed impact interpretation has not been published for this record.

Evidence and limitations

Source ID
malwarebytes_labs
Record identifier
5722626ffbe173e1cf330ce703a8d29187dbf6e5e558facd98705414051d573e
Enrichment time
2026-03-30T20:52:00Z
AI-assisted enrichment
Yes

This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.