
‘Shamos’ is a new infostealer that's being used to target vulnerable Macs but it's also the latest in a long list of malware taking advantage of ClickFix-style attacks to trick users into downloading malicious software disguised as legitimate programs.
Bleeping Computer reports that Shamos is a variant of AMOS (or the Atomic macOS Stealer) and was developed by the COOKIE SPIDER cybercriminal group. It disguises itself as a guide, manual or troubleshooting fix online in order to fool users into downloading it so it can steal sensitive data and credentials from their browsers, as well as Keychain items, Apple Notes and cryptocurrency wallets.