
January 23rd, 2025
A cyberattack campaign is using a fake Homebrew site promoted through Google ads to distribute the Amos infostealer malware to macOS and Linux users. The campaign redirects users from a legitimate-looking Homebrew ad to a fake site, "brewe.sh". This malware targets technical users likely to use Homebrew who may have cryptocurrency wallets or sensitive work credentials. A vulnerability in the 7-Zip file archiver can also allow attackers to bypass Windows security warnings by crafting archives that do not properly apply the Mark of the Web (MotW) metadata, potentially leading to the…
The skinny
The skinny isn't ready yet — notes appear once the transcript is processed.