Fake Claude Install Guide Distributes Six-Stage macOS Stealer and RAT

dar-mit · reddit · 2026-08-02

According to cybersecurity firm Huntress, a new macOS malware is being distributed via Google Ads. Disguised as an official Claude.AI installation guide, it tricks users into copy-pasting a curl command that bypasses macOS security protocols.

Once executed, the payload deploys a complex six-stage malware that functions as both a data stealer and a Remote Access Trojan (RAT), posing a severe threat to user privacy and system security.

Original post →

More from Safety

Safety channel →