Google ads for fake Homebrew, LogMeIn sites push infostealers www.bleepingcomputer.com/news/secu…
A new malicious campaign is targeting macOS developers with fake Homebrew, LogMeIn, and TradingView platforms that deliver infostealing malware like AMOS (Atomic macOS Stealer) and Odyssey.
The campaign employs “ClickFix” techniques where targets are tricked into executing commands in Terminal, infecting themselves with malware.
Homebrew is a popular open-source package management system that makes it easier to install software on macOS and Linux. Threat actors have used in the past the platform’s name to distribute AMOS in malvertising campaigns.
LogMeIn is a remote access service, and TradingView is a financial charting and market analysis platform, both widely used by Apple users.