InfoStealer
Chasing a ClickFix Campaign From One Domain to a macOS Stealer
Yesterday, we traced a single domain from an external threat feed through an extensive delivery chain: compromised WordPress sites, a fake reCAPTCHA challenge and a macOS cryptocurrency stealer delivered from infrastructure operated by a sanctioned Russian hosting provider. Here’s the walkthrough. The starting point At Report URI, we subscribe