By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
Media HydeMedia Hyde
  • Home
  • Politics
  • Education
  • Entertainment
  • Sports
  • Blogs
  • Business & Commerce
  • Others
    • Religious
    • Metropolitan
    • Climate and Weather
Font ResizerAa
Media HydeMedia Hyde
Font ResizerAa
  • Home
  • Politics
  • Education
  • Entertainment
  • Sports
  • Blogs
  • Business & Commerce
  • Others
    • Religious
    • Metropolitan
    • Climate and Weather
Follow US
© 2026 Media Hyde Network. All Rights Reserved.
Cyber SecurityHeadline

AmnesiaStealer Malware Targets macOS Users Through Deceptive GitHub Pages

Last updated: August 17, 2026 8:23 pm
Haris Ali
Share
AmnesiaStealer Malware Targets macOS Users Through Deceptive GitHub Pages
AmnesiaStealer Malware Targets macOS Users Through Deceptive GitHub Pages
SHARE

A new strain of malware dubbed “AmnesiaStealer” is actively compromising macOS systems, using fake GitHub repositories to harvest sensitive browser data. Security researchers identified the threat this week, noting that attackers are leveraging malicious landing pages to trick developers and casual users into downloading high-risk payloads disguised as legitimate software tools.

The attack chain begins with search engine manipulation. Attackers create GitHub pages that mirror popular open-source projects, complete with convincing documentation and “Download” buttons. Once a user triggers the download, the malware executes a script designed to bypass macOS Gatekeeper protections.

“The sophistication lies in how it mimics the development workflow,” said a lead analyst at a prominent cybersecurity firm tracking the campaign. “Users expect to download binaries from GitHub, so the social engineering barrier is exceptionally low.”

Once inside the system, AmnesiaStealer targets browser configuration files and keychain data. It systematically scrapes saved passwords, cookies, and session tokens from Chrome, Brave, and Firefox. By exfiltrating these session cookies, the attackers can effectively hijack active logins, bypassing multi-factor authentication (MFA) on platforms ranging from personal social media accounts to corporate cloud environments.

The malware’s persistence mechanism is equally aggressive. It installs a launch agent in the user’s Library folder, ensuring it runs every time the system boots. This allows the threat actor to maintain a persistent connection to the infected machine, even if the user attempts to restart or clear their browser cache.

Apple’s security team has been notified, but the decentralized nature of GitHub repositories makes it difficult to neutralize the threat entirely. Attackers simply rotate to new domains as soon as one is flagged.

For now, the defense is manual. Security experts advise users to verify the repository owner’s history and commit logs before running any script or executable found on GitHub. If a download prompts an unexpected “Terminal” window or asks for administrative passwords without a clear reason, the process should be terminated immediately.

The risk is not just a lost password; it’s the potential for total account takeover. With session cookies in hand, the barrier between a user’s private data and the attacker’s command-and-control server has effectively vanished.

Share This Article
Email Copy Link Print
Previous Article PTI demands immediate cardiac evaluation for Imran Khan PTI demands immediate cardiac evaluation for Imran Khan
Next Article American Hiker Dies After Lightning Strike on Mount Etna American Hiker Dies After Lightning Strike on Mount Etna
Leave a Comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Sponsored Ads

Stay Connected

FacebookLike
XFollow
InstagramFollow
YoutubeSubscribe
WhatsAppFollow
ThreadsFollow
Four arrested after viral social media influencer Shamsoo Bibi murdered
Four arrested after viral social media influencer Shamsoo Bibi murdered
Court & Crime Headline
August 17, 2026
Digital amnesia: Does the act of taking screenshots impair memory?
Digital amnesia: Does the act of taking screenshots impair memory?
Headline Technology
August 17, 2026
PPP delegation to meet opposition leader tomorrow: sources
PPP delegation to meet opposition leader tomorrow: sources
Headline Politics
August 17, 2026
SSGC Announces Gas Supply Reductions for Karachi and Balochistan
SSGC Announces Gas Supply Reductions for Karachi and Balochistan
Headline Metropolitan
August 17, 2026
Punjab Eases Hiring Ban at PEIMA
Punjab Eases Hiring Ban at PEIMA
Education
August 17, 2026
Teacher Transfer Restrictions Relaxed Across Balochistan QUETTA: The Balochistan government has relaxed restrictions on the transfer and posting of teachers, allowing teaching staff to seek transfers within their respective districts against vacant and approved posts. The School Education Department has issued a revised notification outlining the new arrangements. Under the policy, eligible teachers can be transferred to vacant and sanctioned posts within the same district, providing greater flexibility in teacher postings. However, the ban on inter-district transfers for Secondary School Teachers (SSTs), headmasters and headmistresses will remain in effect. The department has also allowed surplus teachers currently posted in Quetta to return to their native districts. At the same time, teachers cannot be transferred from another district to Quetta or from Quetta to another district under the stated restrictions. Teachers awaiting posting have been directed to submit their applications to the concerned District Education Officer (DEO) within one month. The department has warned that officials or individuals found violating the revised transfer policy will face departmental action. The relaxation is expected to provide relief to eligible teachers while helping the education authorities make better use of available teaching posts across districts.
Teacher Transfer Restrictions Relaxed Across Balochistan
Education
August 17, 2026

You Might Also Like

Ryan Reynolds and Hugh Jackman Reunite for Disney+ Sailing Docuseries
EntertainmentHeadline

Ryan Reynolds and Hugh Jackman Reunite for Disney+ Sailing Docuseries

By
Ayesha Masood
From Poplars to Pistachios, Afghans Rediscover the Value of Trees
Climate and WeatherHeadline

From Poplars to Pistachios, Afghans Rediscover the Value of Trees

By
Ayesha Masood
Court grants bail to podcast host Rehan Tariq in blasphemy case
Court & CrimeHeadline

Court grants bail to podcast host Rehan Tariq in blasphemy case

By
Haris Ali
Sherry Rehman accuses India of weaponizing water flow amid floods
Climate and WeatherHeadline

Sherry Rehman accuses India of weaponizing water flow amid floods

By
Haris Ali
Media Hyde Media Hyde Dark
Facebook Twitter Youtube Rss Medium

About US

Media Hyde Network: Your instant connection to breaking stories and live updates. Stay informed with our real-time coverage across politics, tech, entertainment, and more. Your reliable source for 24/7 News.

Top Categories
  • Headline
  • Politics
  • Entertainment
  • Education
  • Sports
  • Religious
  • Metropolitan
  • Climate and Weather
Usefull Links
  • Contact Us
  • Disclaimer
  • Privacy Policy
  • Cookies Policy
  • Advertising Policy
  • Terms & Conditions

© 2025 Media Hyde Network. All Rights Reserved.

Welcome Back!

Sign in to your account

Username or Email Address
Password

Lost your password?