
New ClickLock Stealer Uses Fake Cloudflare Verification to Compromise macOS Users
A newly identified macOS malware dubbed ClickLock Stealer is leveraging fake Cloudflare verification prompts and ClickFix-style social engineering to compromise users without requiring exploits or elevated privileges, according to Group-IB researchers. The malware, discovered in June 2026 with zero detections on VirusTotal, highlights a growing shift in macOS threats toward deception-driven attacks. While macOS malware […]
The post New ClickLock Stealer Uses Fake Cloudflare Verification to Compromise macOS Users appeared first on Cyber Security News.