💻
Fake OpenAI Codex sites in Google Ads deliver Mac password-stealing malware
💻 Technology

Fake OpenAI Codex sites in Google Ads deliver Mac password-stealing malware

Cybercriminals set up fake OpenAI Codex download pages on Google Sites and advertised them via stolen Google Ads accounts. macOS users were tricked into pasting Terminal commands that installed the AMOS infostealer, capable of stealing passwords within seconds. The malicious site used an iFrame to load harmful content from an external server, bypassing Google's security checks. The Windows download button was a decoy — only the Mac payload was functional.

Comments

No comments yet