Amos Stealer

Malware updated 11 days ago (2024-10-07T16:01:10.100Z)
Download STIX
Preview STIX
AMOS Stealer is a potent malware that targets macOS systems, exploiting them to steal personal information and disrupt operations. This malicious software infects systems through suspicious downloads, emails, or websites, often unbeknownst to the user. Once installed, it can compromise personal data, hinder system functionality, and potentially hold data for ransom. A new variant of AMOS Stealer has been identified, which uses an Apple Script similar to the one used by the second variant of RustDoor, another harmful program. This similarity suggests a possible link between these two malware variants. Recorded Future's Insikt Group discovered twelve websites impersonating legitimate macOS applications, such as CleanShotX, 1Password, and Bartender during an investigation into the AMOS stealer. These fraudulent sites lure users into downloading the malware, demonstrating the adaptability and convenience of this attack method, which raises significant concerns. The new variant of AMOS Stealer has also been linked with the FakeSG campaign, Akira ransomware, and other cybersecurity threats, further emphasizing its potential danger. In addition to stealing personal information, the new variant of AMOS Stealer targets Safari cookies and cryptocurrency wallets, according to HackRead.com. This sophisticated approach indicates a shift towards more lucrative targets, given the increasing popularity of digital currencies. The threat actor behind this new variant of AMOS Stealer was found selling it on Telegram, highlighting the expanding black market for such malicious software. Users are advised to exercise caution when downloading applications and to maintain up-to-date security measures to mitigate the risks posed by such malware.
Description last updated: 2024-10-07T15:19:00.288Z
What's your take? (Question 1 of 1)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Possible Aliases / Cluster overlaps
It's hard to track cluster overlaps and naming conventions between vendors, so here are some possible overlapping names / profiles you also may want to look at. Create a free account to see the source evidence for each alias, and help fix any errors.
Alias DescriptionVotes
Amos is a possible alias for Amos Stealer. AMOS is a malicious software (malware) that specifically targets macOS users. This malware, first reported in early 2024, employs sophisticated techniques to infiltrate systems and steal sensitive information such as passwords, personal files, and crypto wallet details. The AMOS malware was part of
3
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Macos
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the Amos Stealer Malware was read from the documents corpus below. This display is limited to 20 results, create a free account to see more