Fake Empire Podcast Invites Target Crypto Industry with macOS AMOS Stealer
Sept. 19, 2025, 11:14 a.m.
Description
A new phishing campaign is targeting crypto industry developers and influencers with fake interview requests impersonating the popular Empire podcast. Attackers pose as hosts, luring victims to fraudulent websites mimicking platforms like Streamyard and Huddle. These sites prompt users to download a macOS application, which is actually the AMOS (Atomic macOS) Stealer malware. The infection chain involves a complex process of obfuscation and execution of hidden binaries. Once infected, victims risk exposing their digital lives to criminals, who can steal login credentials and other sensitive information. The campaign highlights the importance of caution when dealing with unsolicited requests and downloads from unknown sources.
Tags
Date
- Created: Sept. 19, 2025, 10:47 a.m.
- Published: Sept. 19, 2025, 10:47 a.m.
- Modified: Sept. 19, 2025, 11:14 a.m.
Indicators
- f7fe593806aa2b2486e2052c582b1b8423b2455bf9392fa42b1d2cb6d98ca897
- f7d138a4fa15215c4e747449f31b2b6b6726aed00a9cc9e3ec830df366c1437f
- c275252592228b51b3934a9b3932d269c2f9132caad5f51ae54216ec147a8834
- af4ba47f760ae08bce49c7b7c16e9dcff7df7eff53f27abc0c2a1eee1cea6085
- 69b859db7397a04bb1f1c2ff9d987686b5ce0c64ec8fc716c783ed6dd755e291
- 9665dac619c7d17a2fafd32f2df77f27dc39135d31235a748bd95ac137005e9b
- streamyard.ai
Additional Informations
- Technology
- Finance