AmnesiaStealer: The new hack compromising macOS security
We analyze AmnesiaStealer, a macOS malware that enables remote browser control and puts user privacy at risk.

The rise of AmnesiaStealer: A persistent threat to macOS
Security in the Apple ecosystem, historically perceived as an ironclad environment, is once again in the spotlight. Recently, AmnesiaStealer has been identified, a new information-stealing malware that introduces a concerning capability: interactive, remote control of the victim's browser sessions.
This type of threat proves that no platform is immune to a sophisticated hack. As we have seen in other recent incidents, such as the Critical vulnerability in Metabase: Risk of full access without authentication, attackers are refining their techniques to evade traditional defenses.
How does this cybersecurity threat operate?
The primary entry point for AmnesiaStealer is through social engineering tactics known as ClickFix attacks. In these scenarios, the user is tricked into executing malicious scripts under the false promise of fixing a technical issue on their computer.
Technical capabilities of the malware
What sets this stealer apart from its predecessors is its integrated streaming module. Once the user's vulnerability is exploited, the attacker can:
- View browser activity in real time.
- Interact directly with open sessions, such as bank accounts or social media.
- Extract sensitive data without the need to install additional extensions.
"The real-time remote control capability makes AmnesiaStealer a much more dangerous espionage tool than conventional malicious software," cybersecurity experts warn.
Protection against the evolution of malware
Although this malware focuses on data theft, the history of similar threats suggests that the next step could be the implementation of ransomware to encrypt information before it is exfiltrated. Given this landscape, prevention is the only effective strategy:
- Be wary of pop-ups: Never execute commands or scripts suggested by suspicious websites.
- Constant updates: Keep your macOS system and browsers up to date at all times.
- Use two-factor authentication (2FA): Add an extra layer that prevents attackers from accessing your accounts even with stolen credentials.
In conclusion, the sophistication of attackers demands a proactive stance. Digital security no longer depends solely on installed software, but on the user's ability to identify manipulation attempts before the damage becomes irreversible.
Related articles
7 de septiembre de 2026
Cybersecurity: New ScreenConnect vulnerability facilitates attacks
Researchers have detected a four-stage infection chain that uses ScreenConnect to compromise systems through malicious scripts.
30 de agosto de 2026
Breach at Manchester Airports Group: The hack exposing 86 GB of data
The group FulcrumSec claims to have stolen 86 GB of data from Manchester Airports Group, revealing sensitive passenger and booking information.
23 de agosto de 2026
Hackers infect Android car systems: the new vulnerability
A supply chain attack is turning Android-based automotive multimedia systems into part of a botnet, putting driver security at risk.
8 de agosto de 2026
Critical Vulnerability in Metabase: Risk of Full Unauthorized Access
A maximum-severity vulnerability in Metabase allows remote attackers to execute arbitrary SQL code. Update your system immediately.
Loading comments...