According to CoinDesk, the North Korean hacking group Lazarus Group is launching a new macOS attack campaign called “Mach-O Man,” targeting executives and institutions in high-value sectors such as cryptocurrency and fintech. The attack employs a social engineering technique called “ClickFix,” tricking victims into pasting commands into their Mac terminals to gain access to enterprise systems, SaaS platforms, and financial resources. CertiK researchers state that “Mach-O Man” is a modular macOS malware toolkit developed by Lazarus Group, now being used by other cybercriminal groups, and often self-deletes before victims notice, increasing the difficulty of attribution and detection. Additionally, attackers have already carried out this campaign by hijacking DeFi project domains and replacing them with fake Cloudflare messages.
The North Korean Lazarus Group launches a macOS malware attack targeting crypto and fintech executives.
TechFlowShare
Cryptocurrency news broke today as North Korea’s Lazarus Group launched a macOS malware campaign named 'Mach-O Man,' targeting crypto and fintech executives. The attackers employ a social engineering technique called 'ClickFix' to infiltrate corporate systems and access financial resources. CertiK researchers confirmed the malware is modular and self-deleting, making it difficult to trace. Cybercriminals have also hijacked DeFi domains to distribute fake Cloudflare messages. These attacks underscore the urgent need for stronger regulations and security measures in the cryptocurrency sector.
Source:Show original
Disclaimer: The information on this page may have been obtained from third parties and does not necessarily reflect the views or opinions of KuCoin. This content is provided for general informational purposes only, without any representation or warranty of any kind, nor shall it be construed as financial or investment advice. KuCoin shall not be liable for any errors or omissions, or for any outcomes resulting from the use of this information.
Investments in digital assets can be risky. Please carefully evaluate the risks of a product and your risk tolerance based on your own financial circumstances. For more information, please refer to our Terms of Use and Risk Disclosure.



