'Mainstream malware now regularly affects macOS users' — inside the relentless rise of the AMOS infostealer, one of the most dangerous macOS malware ever developed
The AMOS infostealer has emerged as a significant threat to macOS users, exploiting user behavior rather than technical vulnerabilities. This malware relies on social engineering tactics to trick users into executing malicious commands. Security firms report that AMOS accounts for a substantial portion of macOS malware incidents and updates.
- ▪AMOS exploits ordinary user behavior by tricking them into typing malicious commands into their Terminal application.
- ▪Nearly 40% of all macOS protection updates deployed by Sophos in 2025 were related to AMOS.
- ▪Almost half of all macOS stealer customer reports in the last three months involved AMOS or its close variants.
Opening excerpt (first ~120 words) tap to expand
Pro Security 'Mainstream malware now regularly affects macOS users' — inside the relentless rise of the AMOS infostealer, one of the most dangerous macOS malware ever developed News By Efosa Udinmwen published 24 May 2026 AMOS campaign relies on users executing malicious commands manually When you purchase through links on our site, we may earn an affiliate commission. Here’s how it works. (Image credit: Pixabay) Copy link Facebook X Whatsapp Reddit Pinterest Flipboard Threads Email Share this article 0 Join the conversation Follow us Add us as a preferred source on Google Newsletter Subscribe to our newsletter AMOS relies on users executing malicious terminal commands themselvesSophos MDR identified ClickFix-style social engineering in macOS attacksHalf of macOS stealer reports involved…
Excerpt limited to ~120 words for fair-use compliance. The full article is at TechRadar.