Skip to content
New AMOS Malware Targets macOS Users via Deceptive Tactics

New AMOS Malware Targets macOS Users via Deceptive Tactics

First seen 20 Dec 2025, 13:02 UTC

Article Content

Browse articles
ThreatCluster AI
ThreatCluster March 12, 2026 at 13:27 UTC

A new malware called Atomic macOS Stealer (AMOS) is targeting macOS users through deceptive methods. Attackers are using fake Google ads, lookalike websites, and fraudulent links to trick users into executing harmful commands in their Terminal, which allows the malware to bypass Apple's security measures. Once executed, the malware installs AMOS and a backdoor for remote access.

Start a free Starter trial for enhanced analysis

Ask AI about this cluster

Updated 182d ago How this analysis works

More articles in this cluster (1)

Following this threat?

Track AMOS in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.

Free account · no card needed