
New malware exploits fake updates to steal data
Windows has always been a favorite target for hackers, but it seems they have now figured out how to actively target Macs as well. We've seen an alarming rise in malware affecting Mac computers, stealing personal data and cryptocurrency.
Threat actors are now using AI along with elaborate social engineering tricks to target Apple users, and the company doesn't seem to be doing much about it. Meanwhile, a cybersecurity report has identified a new Mac malware called FrigidStealer, which spreads through fake browser updates and compromised websites.
A new malware strain called FrigidStealer is targeting macOS users as part of a broader campaign involving fake update scams, cybersecurity firm Proofpoint reported. FrigidStealer spreads through compromised websites that display deceptive browser update prompts. When users click on these prompts, they unknowingly download a malicious DMG file. Once executed, the malware requests the user's system password to gain elevated privileges before stealing sensitive information, including browser cookies, password-related files, cryptocurrency data and Apple Notes.
Proofpoint identified two new threat actors behind the operation: TA2726, which functions as a traffic distribution service provider, and TA2727, which delivers FrigidStealer to Mac users. The campaign also deploys malware on Windows and Android devices, signaling a multi-platform attack strategy. The cybersecurity firm assessed with high confidence that TA2726 distributes traffic for other malware campaigns as well. Some operations previously attributed to TA569 have now been reclassified under TA2726 and TA2727.
TA569 – also known as Mustard Tempest, Gold Prelude and Purple Vallhund – is linked to the cybercrime syndicate EvilCorp and was first identified in 2022.
Proofpoint also assessed with moderate confidence that TA2727 purchases traffic through online forums to spread malware, which could be its own or that of potential clients.
"These are traffic sellers and malware distributors and have been observed in multiple web-based attack chains like compromised website campaigns," the report stated, "including those using fake update-themed lures."
Threat intelligence platform KELA reported that hackers using Lumma, along with StealC, Redline and other infostealers, infected 4.3 million machines in 2024, compromising an estimated 330 million credentials. Security researchers also observed 3.9 billion credentials circulating in lists that appear to originate from infostealer logs.
Infostealer malware is expected to remain a persistent threat in 2025. With malware-as-a-service platforms on the rise and infostealers becoming more sophisticated, cybercriminals will likely continue relying on them as a primary tool for stealing credentials and infiltrating systems.
As infostealer malware continues to grow in sophistication, taking proactive steps to protect your data is more important than ever. Here are four key ways to safeguard yourself from threats like FrigidStealer, Lumma and other credential-stealing malware.
1) Beware of fake software updates: One of the most common infection methods is through deceptive browser update prompts. Never download updates from pop-ups or random websites. Instead, always update your software directly from official sources, such as the App Store or the application's official website. If in doubt, check out my detailed guide on how to keep your device and software updated.
2) Enable two-factor authentication (2FA): Even if your credentials are stolen, 2FA adds an extra layer of security by requiring a secondary verification method, such as a one-time code sent to your phone. Use 2FA for all critical accounts, including email, banking and cloud services.
3) Use a password manager: Many infostealers target saved passwords in web browsers. Instead of relying on your browser to store credentials, use a dedicated password manager. Get more details about my best expert-reviewed Password Managers of 2025 here.
4) Be cautious with downloads and links. Use a strong antivirus: Infostealer malware often spreads through malicious downloads, phishing emails and fake websites. Avoid downloading software or files from untrusted sources and always double-check links before clicking them. Attackers disguise malware as legitimate software, game cheats or cracked applications, so it is best to stick to official websites and app stores for downloads.
The best way to safeguard yourself from malicious links that install malware, potentially accessing your private information, is to have strong antivirus software installed on all your devices. This protection can also alert you to phishing emails and ransomware scams, keeping your personal information and digital assets safe. Get my picks for the best 2025 antivirus protection winners for your Windows, Mac, Android and iOS devices.
As the digital landscape evolves, so do the nasty threats we face. FrigidStealer is just the latest reminder that no platform, not even macOS, is immune to the growing sophistication of cybercriminals. With infostealers like Lumma, StealC and Redline already compromising millions of devices and billions of credentials in 2024, the rise of AI-driven attacks and social engineering scams signals a challenging road ahead.
Do you think companies like Apple should be doing more to combat these evolving threats? Let us know by writing us at Cyberguy.com/Contact.
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter.
Follow Kurt on his social channels:
Answers to the most-asked CyberGuy questions:
New from Kurt:
Copyright 2025 CyberGuy.com. All rights reserved.

Try Our AI Features
Explore what Daily8 AI can do for you:
Comments
No comments yet...
Related Articles
Yahoo
44 minutes ago
- Yahoo
Stock Futures Edge Higher
Stock futures edged slightly higher Sunday as investors looked forward to an update on trade policies and as Apple prepared to kick off its annual developers conference. Shortly after 6 p.m. Eastern time on Sunday, Dow Jones Industrial Average futures were up 27 points or less than 0.1%, while S&P 500 futures and Nasdaq futures also ticked up less than 0.1%. U.S. and Chinese officials are scheduled to discuss trade in a meeting on Monday.
Yahoo
44 minutes ago
- Yahoo
Down 21%, Should You Buy the Dip on Apple Stock? The Answer Might Surprise You.
It's the combination of products and services that has made Apple one of the best businesses on Earth. Ongoing uncertainty surrounding the tariff situation adds to investor concerns. At the current valuation, Apple stock provides zero margin of safety. 10 stocks we like better than Apple › Apple (NASDAQ: AAPL) shares are down 18% in 2025 (as of June 6). This makes Apple the worst-performing "Magnificent Seven" constituent this year, besides Tesla. Investors are probably concerned about tariff uncertainty and the company's slow progress with artificial intelligence (AI). The stock is currently 21% below its peak. So, it has some work to do to get back to its former glory. Legendary investor Warren Buffett and his conglomerate, Berkshire Hathaway, have sold a sizable chunk of their shares in the past several quarters. However, should you go against the Oracle of Omaha's moves and buy the dip on Apple stock? I think the answer might surprise you. I mention Buffett because many individual investors like to follow his buy and sell decisions. Clearly, when Berkshire first bought Apple in early 2016, they must've thought the tech giant was a high-quality enterprise. It's not hard to see why. Apple's brand is arguably the most recognizable in the world. This position wasn't created overnight. It took years and years of introducing truly exceptional products and services, that were well designed and incredibly easy to use, on a global scale. Apple is an icon, to say the least. That brand has helped drive Apple's pricing power. And this supports the company's unrivaled financial position. Apple remains an unbelievably profitable business. It brought in $24.8 billion in net income in the latest fiscal quarter (Q2 2025 ended March 29). Apple's products and services are impressive on their own. However, it's the combination of both of these aspects that creates the powerful ecosystem. Consumers are essentially locked in, which creates high barriers for them to switch to competing products. This favorable setup places Apple in an enviable position from a competitive perspective. Despite Apple's market cap of nearly $3.1 trillion, which might make some investors believe it's immune to external challenges, this business is dealing with some notable issues recently. There are three that immediately come to mind. The first problem is that Apple's growth engine seems to be decaying. Net sales were up less than 7% between fiscal 2021 and fiscal 2024. And they're up just over 4% through the first six months of fiscal 2025. According to management, there are likely over 2.4 billion active Apple devices across the globe. That number continues to rise with every passing quarter, but you get an idea of how ubiquitous these products are. Plus, the maturity of the iPhone, now almost two decades into its lifecycle, might lead to limited opportunities to further penetrate markets. Critics can also call out Apple's slow entrance into the AI race. For example, we won't see an AI update to Siri until next year, a launch that was delayed. At the same time, it seems like other companies are moving rapidly to win the AI race. Lastly, Apple has been and could continue to be drastically impacted by the tariff situation. China, which has gotten the most attention from President Donald Trump during the ongoing trade tensions, has been a manufacturing powerhouse for Apple. The business is being forced to shift its supply chain around to minimize the impact. Apple CEO Tim Cook said that the situation makes it challenging to forecast near-term results. Even though this stock trades 21% off its peak, investors aren't really getting a bargain deal here. The price-to-earnings ratio is 32 right now. That's not cheap for a company whose earnings per share are only expected to grow at a compound annual rate of 8.8% between fiscal 2024 and fiscal 2027. In my view, there's zero margin of safety. If you're an investor who wants to generate market-beating returns over the next five years, I don't think you should buy Apple today. Before you buy stock in Apple, consider this: The Motley Fool Stock Advisor analyst team just identified what they believe are the for investors to buy now… and Apple wasn't one of them. The 10 stocks that made the cut could produce monster returns in the coming years. Consider when Netflix made this list on December 17, 2004... if you invested $1,000 at the time of our recommendation, you'd have $669,517!* Or when Nvidia made this list on April 15, 2005... if you invested $1,000 at the time of our recommendation, you'd have $868,615!* Now, it's worth noting Stock Advisor's total average return is 792% — a market-crushing outperformance compared to 173% for the S&P 500. Don't miss out on the latest top 10 list, available when you join . See the 10 stocks » *Stock Advisor returns as of June 2, 2025 Neil Patel has no position in any of the stocks mentioned. The Motley Fool has positions in and recommends Apple, Berkshire Hathaway, and Tesla. The Motley Fool has a disclosure policy. Down 21%, Should You Buy the Dip on Apple Stock? The Answer Might Surprise You. was originally published by The Motley Fool Error in retrieving data Sign in to access your portfolio Error in retrieving data Error in retrieving data Error in retrieving data Error in retrieving data

Indianapolis Star
2 hours ago
- Indianapolis Star
When is Apple's WWDC 2025 event? Start time, rumors, more
Apple's Worldwide Developers Conference is less than a day away, though it appears that the event will see a restrained rollout compared to the AI extravaganza held a year ago. The week-long event will kick off with a keynote address on Monday, June 9, and run through Friday, June 13. There will be more than 100 technical sessions for developers, as well as group and one-on-one lab sessions, Apple announced in a news release. USA TODAY will provide live coverage of Monday's keynote, along with the latest updates on the company reveals. Here's what you need to know before Apple's Worldwide Developers Conference 2025. The keynote for WWDC 2025 takes place at Apple Park in Cupertino, California, on June 9 at 1 p.m. ET/10 a.m. PT and be followed by a "Platforms State of the Union." The keynote is set to be streamed on Apple TV, the Apple YouTube page and at USA TODAY will also provide live coverage. Bloomberg's Mark Gurman reported that Apple is preparing a modest rollout of artificial intelligence features, targeting WWDC 2026 to make a larger splash. Gurman wrote in the Power On newsletter that the most significant AI announcement this year will be the opening of Apple's Foundation Models to third-party developers. He noted that the move is being made in hope of spurring the creation of new AI features and apps to help Apple catch up in the artificial intelligence market. Gurman also reported that Apple appears set to add a centralized gaming app in the next iOS update. He indicates the app will be preinstalled with the update and will be a place for users to launch games, find new titles, view leaderboards and communicate with other players. "The new app will serve as a Game Center replacement, and is more ambitious," Gurman wrote. "But it's unlikely to shake up the industry." Apple appears set to change the naming system for iOS on Monday, according to Gurman. The company will move from numbering operating system updates sequentially to numbering them by year in a manner similar to the way car models are identified. Under the new system, the Monday update will be iOS 26 instead of iOS 19.