Mac users beware — this devious new infostealer malware disguises itself as official Apple tools to lure in victims
A new variant of the SHub macOS infostealer malware, named 'Reaper', has been discovered by SentinelOne. This malware disguises itself as legitimate Apple and Google update tools to lure victims into infection. It primarily targets sensitive information such as browser credentials and cryptocurrency wallets, with indications of Russian-speaking operators behind the attacks.
- ▪SentinelOne identified a new variant of the SHub macOS infostealer called 'Reaper'.
- ▪The malware spreads through typosquatted domains of popular apps like WeChat and Miro.
- ▪Reaper targets sensitive data including browser credentials and cryptocurrency wallets, while avoiding systems in the Commonwealth of Independent States.
Opening excerpt (first ~120 words) tap to expand
Pro Security Mac users beware — this devious new infostealer malware disguises itself as official Apple tools to lure in victims News By Sead Fadilpašić published 19 May 2026 SentinelOne found a new variant of the SHub macOS infostealer When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works. (Image credit: Berat Bozkurt on Unsplash) Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter SentinelOne uncovers new SHub macOS infostealer variant dubbed Reaper, spread via typosquatted WeChat and Miro domainsThe malware disguises itself with fake Apple and Google update components, establishing…
Excerpt limited to ~120 words for fair-use compliance. The full article is at TechRadar.