Nyongesa Sande
No Result
View All Result
  • News
    • World
    • Africa
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live
  • World Cup 2026
    • World Cup 2026 Standings
    • World Cup 2026
Nyongesa Sande
  • About Us
    • Nyosake Designers
      • Nyosake Webmasters
      • Nyosake Investment
  • Contact Us
    • Newsroom Contact
  • Ownership Disclosure
  • Advertise
No Result
View All Result
Nyongesa Sande
No Result
View All Result
  • News
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live
  • World Cup 2026
ADVERTISEMENT

Home » FrigidStealer Malware Targets macOS Users Through Fake Browser Updates

FrigidStealer Malware Targets macOS Users Through Fake Browser Updates

NyongesaSande News Desk by NyongesaSande News Desk
1 year ago
in How To
Reading Time: 5 mins read
A A
The Top 6 Digital Crimes in Kenya That Could Land You in Jail

📍 San Francisco, CA – February 21, 2025 (NS News) – A new malware campaign known as FrigidStealer is actively targeting macOS users, tricking them into installing fake browser updates from compromised websites. Security researchers have linked the stealer malware to the cybercriminal group TA2727, which has previously deployed similar attacks on Windows and Android platforms.

  • How FrigidStealer Infects macOS Devices
  • What FrigidStealer Steals
  • Who is Behind FrigidStealer?
  • Why macOS is Becoming a Target
  • How to Protect Your Mac from FrigidStealer
  • Final Thoughts

Unlike traditional phishing scams, FrigidStealer infections originate from legitimate websites injected with malicious JavaScript, making the fake update alerts appear highly convincing.


How FrigidStealer Infects macOS Devices

FrigidStealer operates using web injects, a technique that modifies legitimate websites by inserting malicious code. Here’s how the infection works:

ADVERTISEMENT

1️⃣ Fake Browser Update Prompt – Users visiting an infected site see a pop-up urging them to update Safari or Chrome.
2️⃣ Malicious DMG Download – Instead of a real update, the download contains the FrigidStealer malware.
3️⃣ User Execution Required – The victim manually installs the fake update, unknowingly triggering the malware.
4️⃣ Bypassing Gatekeeper – The malware tricks users into overriding macOS security by using social engineering tactics.
5️⃣ Privilege Escalation – It prompts users for their admin password, allowing the malware elevated access.
6️⃣ Data Exfiltration – Once installed, FrigidStealer harvests sensitive information and transmits it to the attacker’s command-and-control (C2) server.


What FrigidStealer Steals

Once inside the system, FrigidStealer scans for personal data, including:

ADVERTISEMENT

🔹 Saved Browser Credentials – Extracts stored passwords from Safari, Chrome, and Firefox.
🔹 Session Cookies – Can hijack logged-in accounts.
🔹 Cryptocurrency Wallets – Targets stored crypto keys and wallets.
🔹 Apple Notes – Reads stored notes, which may contain sensitive text or passwords.

Security firm Proofpoint analyzed the malware and found that it was written in Go, utilizing the WailsIO framework to create realistic-looking update prompts inside the browser.


Who is Behind FrigidStealer?

Cybercriminal group TA2727, linked to several malware distribution campaigns, is believed to be responsible for FrigidStealer. They operate alongside TA2726, a Traffic Distribution System (TDS) operator that redirects users to malicious downloads.

ADVERTISEMENT

In previous attacks, TA2727 has deployed:
✔ Lumma Stealer – A Windows-based credential stealer.
✔ Marcher – An Android banking trojan.
✔ Hijack Loader – A Windows malware loader for delivering additional payloads.

Now, FrigidStealer expands their attack operations to macOS, signaling a growing interest in Apple’s ecosystem.


Why macOS is Becoming a Target

Historically, macOS was considered more secure than Windows due to lower market share and built-in security protections. However, with the rise of MacBooks in corporate environments, attackers are evolving their methods.

A Proofpoint cybersecurity report states:
“Threat actors are increasingly using compromised websites to deliver malware customized for macOS users, particularly in enterprise settings.”

This trend contradicts the belief that macOS is immune to stealer malware, emphasizing the need for heightened security awareness.


How to Protect Your Mac from FrigidStealer

To stay safe from FrigidStealer and similar threats, follow these cybersecurity best practices:

✔ Avoid Pop-Up Updates – Never install browser updates from random pop-ups or alerts. Always update software via:

  • Safari → System Settings > Software Update
  • Chrome → Help > About Google Chrome
    ✔ Download Software Only from Official Sources – Stick to the Mac App Store or official vendor websites.
    ✔ Use Security Software – Install reputable antivirus & anti-malware tools like Malwarebytes, Intego, or Sophos.
    ✔ Keep macOS Updated – Enable automatic updates to receive the latest security patches.
    ✔ Enable Gatekeeper & XProtect – Do not disable macOS security protections for unknown apps.
    ✔ Check for Unsigned Apps – If an app requires you to override security warnings, it’s a red flag.

Final Thoughts

FrigidStealer is a serious threat to macOS users, proving that cybercriminals are increasingly targeting Apple devices. The malware’s ability to masquerade as a browser update makes it particularly deceptive.

🚨 If you suspect an infection, immediately:

  • Run a full system security scan.
  • Change your passwords for sensitive accounts.
  • Monitor bank and cryptocurrency accounts for unauthorized access.

📢 Stay informed with NS News for the latest cybersecurity updates! 🚀

Tags: How To
Share2Tweet1SendShareScanSharePinShareShare
Google Add as a Preferred Source on Google
Previous Post

Sophos and Pax8 Partner to Streamline Cybersecurity for MSPs

Next Post

How to Start Betting in Kenya: A Step-by-Step Guide

NyongesaSande News Desk

NyongesaSande News Desk

Nyongesa Sande offers diverse content across news, technology, entertainment, and more, aiming to provide readers with a wide range of informative and engaging articles. NYONGESA SANDE's dedicated team provides our audience not only with the highly relevant news but also with outstanding interactive experience.

Related Posts

How to Weld a 2-Block Rectangular Hollow Block Mold: Measurements, Materials and Step-by-Step Guide
How To

How to Weld a 2-Block Rectangular Hollow Block Mold: Measurements, Materials and Step-by-Step Guide

1 month ago
How to Create a Facebook Account on iPhone App
How To

How to Fix Facebook Confirmation Email Not Received

1 month ago
How to Create a Facebook Account on iPhone App
How To

How to Fix Facebook Confirmation Code Not Received

1 month ago
How to Create a Facebook Account on iPhone App
How To

How to Confirm Your Facebook Email or Phone Number

1 month ago
How to Create a Facebook Account on iPhone App
How To

How to Understand Your Facebook Account and Profiles

1 month ago
How to Create a Facebook Account on iPhone App
How To

How to Fix Facebook Name Not Accepted

1 month ago
Load More
Next Post

How to Start Betting in Kenya: A Step-by-Step Guide

Mozzart Refund gives you an opportunity to WIN in the event that a predicted outcome

How to Find a Reliable Bookmaker

Trending

  • FIFA 2026 World Cup Stadiums: Everything to Know

    FIFA 2026 World Cup Stadiums: Everything to Know

    3 shares
    Share 1 Tweet 1
  • List of Elected MCAs in Nakuru County for the 2017 General Elections

    23 shares
    Share 9 Tweet 6
  • World Cup 2026 Venues, Tickets and Fan Festivals

    2 shares
    Share 1 Tweet 1
  • World Cup 2026 Tickets and Hospitality

    1 shares
    Share 0 Tweet 0
  • List of 2022 – 2027 mps contacts in Kenya

    586 shares
    Share 234 Tweet 147
  • List of Elected MCAs in Meru County for the 2017 General Elections

    11 shares
    Share 4 Tweet 3
  • Levi’s Stadium World Cup 2026 Guide: Capacity, Location, Matches and Round of 32 Venue

    1 shares
    Share 0 Tweet 0
  • Germany vs Curaçao: 2026 World Cup Match Preview

    1 shares
    Share 0 Tweet 0
  • MTN Router Login

    14 shares
    Share 6 Tweet 4
  • QVSELP Scam Warning: Why Kenyans Should Be Careful

    2 shares
    Share 1 Tweet 1
ADVERTISEMENT
ADVERTISEMENT

Who We Are

Nyongesa Sande

NyongesaSande.com is a digital news and media platform covering breaking news, business, technology, AI, politics, sports, world affairs and African innovation.

News Sections

  • News
    • World
    • Africa
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live
  • World Cup 2026
    • World Cup 2026 Standings
    • World Cup 2026

Editorial Standards

  • Editorial Policy
  • Fact Checking Policy
  • Corrections Policy
  • Ethics Policy
  • AI Usage Policy
  • News Tips
  • Submit Press Release

Legal

  • Privacy Policy
  • Terms of Use
  • Cookie Policy
  • Risk Disclaimer
  • Disclaimer
  • DMCA
  • Ad Choices

Our Company

  • About Us
    • Nyosake Designers
      • Nyosake Webmasters
      • Nyosake Investment
  • Contact Us
    • Newsroom Contact
  • Ownership Disclosure
  • Advertise
  • Privacy Policy
  • Terms of Use
  • Cookie Policy
  • Risk Disclaimer
  • Disclaimer
  • DMCA
  • Ad Choices

NyongesaSande.com is an independent digital news and media platform covering Africa, business, technology, AI, politics and global developments.

© 2026 NyongesaSande.com. All rights reserved.

No Result
View All Result
  • News
    • World
    • Africa
  • Politics
  • Business
  • Tech
  • AI
  • Telecom
  • Sports
  • Opinion
  • Lifestyle
  • Live
  • World Cup 2026
    • World Cup 2026 Standings
    • World Cup 2026

NyongesaSande.com is an independent digital news and media platform covering Africa, business, technology, AI, politics and global developments.

© 2026 NyongesaSande.com. All rights reserved.