“Reaper” stealer is targeting macOS users - stealing passwords, crypto wallets, and planting backdoors for persistence. Apple users are no longer flying under the radar. 🍎💀 #MacSecurity #Infostealer

https://www.theregister.com/security/2026/05/19/do-fear-the-reaper-stealer-swipes-macos-users-passwords-wallets-then-backdoors-them/5242258

Do fear the Reaper - stealer swipes macOS users' passwords, wallets, then backdoors them

While also spoofing all the trusted domains - Apple, Microsoft, and Google - in the same attack

theregister

SSD vs HDD: Why it matters for file security.

SSDs use wear-leveling and copy-on-write — traditional overwriting doesn't work. Files stay recoverable for months even after deletion.

HDDs overwrite predictably. Same file, same spot.

VaultSort detects your storage type and applies the right deletion method. SSD owners: your old tools aren't protecting you.

#MacSecurity #DataPrivacy #FileManagement

ClickFix evoluciona: ahora usa el Editor de Scripts de Mac para infectar.
Falsa página de limpieza abre Script Editor y descarga Atomic Stealer.
No ejecutes scripts desde el navegador.
#MacSecurity

KnockKnock finds what's persistently installed on a Mac—spotting potential malware that survives restarts. The free tool exposes persistent launchers, agents & drivers so users can assess threats. Learn more: https://objective-see.org/products/knockknock.html 🛡️🔎 #MacSecurity #InfoSec

https://formulae.brew.sh/cask/knockknock#default

Objective-See: KnockKnock

#KnockKnock „Who's there?“ zeigt, was dauerhaft auf dem Mac installiert ist — oft Verstecke für Malware, die sich bei jedem Neustart neu startet. Tool deckt persistente Komponenten auf. Mehr Infos & Download: https://objective-see.org/products/knockknock.html 🔍🛡️ #MacSecurity #Malware #Infosec

https://formulae.brew.sh/cask/knockknock#default

Objective-See: KnockKnock

🔒 Il tuo Mac merita il top! Scopri la nostra classifica delle migliori VPN per Mac, aggiornata a Marzo 2026. Sicurezza e velocità a portata di click! #VPN2026 #MacSecurity

🔗 https://www.tomshw.it/hardware/migliori-vpn-per-mac

Migliori VPN per Mac (maggio 2026)

Una guida alle migliori VPN per Mac per scegliere app macOS sicure, veloci e adatte a privacy, Wi-Fi pubblici, streaming, lavoro remoto e uso su più dispositivi.

Tom's Hardware

BYOK means you control your API keys. VaultSort's AI Job Builder never sees them — they stay on your Mac, sent directly to OpenAI, Anthropic, or Google. Better yet: Google Gemini offers free API keys. Zero cost to describe file rules in plain English and let AI build your organization tree. #MacSecurity #OpenSource #Privacy

#PrivacyFirst #MacApps #DataPrivacy

RE: https://infosec.exchange/@_r_netsec/116220859869337905

Waah, joli boulot.
Je me demande qui en est l’auteur.

lecture technique très intéressante.
Une analyse statique complétée par du monitoring comportementale réseau qui plonge dans les entrailles du ver infostealer macOS injecté dans un plugin VS Code lors de la campagne Glassworm v2.. 👀

C’est balaise et résilient, avec une belle répartition des tâches de vol entre AppleScript et Node.js.  

Les échantillons déobfusqués ont aussi été mis à disposition sur #malwarebazaar

https://bazaar.abuse.ch/sample/d72c1c75958ad7c68ef2fb2480fa9ebe185e457f3b62047b31565857fa06a51a/

#CyberVeille #MacSecurity #macOS #Malware #ThreatIntel #Glassworm
👇

The truth is out there. It's in your ~/Downloads. 10,000 files. Unsorted. Unencrypted. VaultSort organizes them faster than Mulder finds evidence. One-time purchase. No recurring charges. No aliens required. #xFilesLive #MacSecurity
That old USB drive in your drawer? Standard deletion leaves your files recoverable. Someone plugs it into forensic tools and retrieves years of financial records, passwords, client data. VaultSort's secure deletion uses multi-pass overwriting and anti-forensic techniques to make recovery impossible. Before you recycle, shred. #DataSecurity #MacSecurity #PrivacyMatters #InfoSec