AI-Poisoning & AMOS Stealer: How Trust Became the Biggest Mac Threat

Dec. 21, 2025, 6:56 p.m.

Description

A sophisticated malware campaign exploits user trust in AI platforms to deliver the AMOS stealer. Attackers use SEO poisoning to surface malicious ChatGPT and Grok conversations offering 'helpful' macOS disk cleanup advice. These conversations contain Terminal commands that, when executed, deploy AMOS, a multi-stage malware that harvests credentials, escalates privileges, and establishes persistence. The attack bypasses traditional security measures by leveraging legitimate platforms and user behavior, making it particularly insidious. AMOS targets cryptocurrency wallets, browser data, and system information, exfiltrating sensitive data to attacker-controlled servers. This campaign represents a significant evolution in social engineering techniques, exploiting the growing reliance on AI assistants for technical guidance.

Date

  • Created: Dec. 10, 2025, 12:06 p.m.
  • Published: Dec. 10, 2025, 12:06 p.m.
  • Modified: Dec. 21, 2025, 6:56 p.m.

Indicators

  • ab60bb9c33ccf3f2f9553447babb902cdd9a85abce743c97ad02cbc1506bf9eb
  • 340c48d5a0c32c9295ca5e60e4af9671c2139a2b488994763abe6449ddfc32aa
  • e1ca6181898b497728a14a5271ce0d5d05629ea4e80bb745c91f1ae648eb5e11
  • 68017df4a49e315e49b6e0d134b9c30bae8ece82cf9de045d5f56550d5f59fe1
  • 276db4f1dd88e514f18649c5472559aed0b2599aa1f1d3f26bd9bc51d1c62166
  • 45.94.47.186
  • 45.94.47.205
  • http://putuartana.com/cleangpt

Attack Patterns

  • Atomic macOS Stealer
  • AMOS

Additional Informations

  • sanchang.org
  • wbehub.org