Atomic macOS Stealer has access to iCloud Keychain passwords, system info, desktop and files in documents folder, Mac’s password. It can also get autofill information, passwords, cookies, wallets, credit card information by infiltrating web browser applications. It targets crypto wallets like Electrum, Binance, Atomic.
Sold for $1000 per month on Telegram
How is AMOS transmitted?
AMOS requires the .dmg extension file to be uploaded, and the user password authentication process after installation. Once installed, the malware scans sensitive information, retrieves it with a system password if necessary, and sends it to a remote server.
AMOD etc. way of protection from pests; installing software from the Mac App Store or avoiding downloading files from dubious, unverified sources.