Fake Mac Clipboard App Spreads Password-Stealing Malware

A new Mac infostealer called PamStealer is impersonating the open-source Maccy clipboard manager. The malware is designed to steal passwords and other sensitive data from infected devices.

Fake Mac Clipboard App Spreads Password-Stealing Malware

What happened?

A new Mac infostealer called PamStealer is impersonating the open-source Maccy clipboard manager. The malware is designed to steal passwords and other sensitive data from infected devices.

Why it matters

The development matters because clipboard managers are common productivity tools, and a convincing impersonation can increase the chance that users install malware without realizing it. For crypto users in particular, password theft can put exchange accounts, wallets, and other sensitive services at risk if infected devices are used to access them.

A new Mac malware campaign is using a fake version of the open-source Maccy clipboard manager to distribute an infostealer known as PamStealer. The malicious app is designed to look like a legitimate clipboard utility while quietly harvesting passwords and other sensitive information from victims’ devices.

The development matters because clipboard managers are common productivity tools, and a convincing impersonation can increase the chance that users install malware without realizing it. For crypto users in particular, password theft can put exchange accounts, wallets, and other sensitive services at risk if infected devices are used to access them.

PamStealer adds to the growing list of malware families that target Mac users by disguising themselves as familiar software. The tactic highlights how attackers continue to rely on social engineering rather than only technical exploits to gain access to devices.

The incident is also a reminder for developers and companies that software distribution channels and brand trust remain important security concerns. Users who download apps outside of official or well-vetted sources can be exposed to malicious lookalikes that are difficult to spot at first glance.

As with other infostealer threats, the safest approach is to verify software sources carefully and limit the permissions granted to unfamiliar apps. Mac users, including those active in crypto, should be especially cautious when installing tools that request broad access to clipboard or account data.

Source: Decrypt

Keep exploring

Related stories

Bitget to Leave Japan and Close Remaining Positions by Year-End

Bitget to Leave Japan and Close Remaining Positions by Year-End

Bitget plans to exit the Japanese market and close all remaining positions by the end of the year. The move adds to ongoing shifts among crypto companies navigating Japan’s regulatory environment.

Read
State of Crypto countdown highlights key industry developments

State of Crypto countdown highlights key industry developments

CoinDesk’s State of Crypto coverage counts down recent developments shaping the crypto policy and market landscape. The report frames these changes as important for how companies and participants navigate the sector.

Read
Strategy Keeps STRC Dividend at 12%

Strategy Keeps STRC Dividend at 12%

Strategy said it is holding the dividend on its STRC preferred stock at 12%. The decision keeps the payout unchanged for investors in the company’s yield-focused security.

Read