As cited
Copy frozen at (site build).
threat intel
New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password
ClickLock Stealer is a new macOS infostealer that arrives via a Terminal command and displays a fake system dialog requesting the user's login password. When users decline, the malware installs LaunchAgents that repeatedly terminate core system applications like Finder, Dock, and Spotlight every 210 milliseconds until the victim relents and provides their credentials.
Why it matters: macOS users and administrators need to block Terminal-based installation vectors and educate staff to refuse suspicious password prompts, as this stealer renders systems unusable to coerce credential theft.
- Source published
- First seen by Cybersecurity Tracker
Source attribution
Correction
Correction recorded as of .
threat intel
New ClickLock macOS Stealer Kills Apps Every 210ms Until Victims Type Their Password
ClickLock Stealer is a new macOS infostealer that arrives via a Terminal command and displays a fake system dialog requesting the user's login password. When users decline, the malware installs LaunchAgents that repeatedly terminate core system applications like Finder, Dock, and Spotlight every 210 milliseconds until the victim relents and provides their credentials.
Why it matters: macOS users and administrators need to block Terminal-based installation vectors and educate staff to refuse suspicious password prompts, as this stealer renders systems unusable to coerce credential theft.
- Source published
- First seen by Cybersecurity Tracker