New 'ClickLock' Malware Targets Mac Users, Compromising Security
A new malware, known as 'ClickLock Stealer,' has been identified by security firm Group-IB, targeting macOS users by coercing them into revealing their passwords. The malware operates without the need for exploits or elevated privileges, relying instead on users pasting a command into Terminal. This command is often disguised as a verification step on fake 'ClickFix' pages. Once executed, the malware downloads modules and locks system usage until the user enters their password. It then harvests sensitive data, including browser credentials and cryptocurrency wallets, sending it to a Telegram bot. The campaign has been active since May 2026, affecting over 100 victims across 33 countries, with a significant number in Europe.