[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fot-hzrIVh87M_bS4iTxgMlGn9sQCVkClosEDDUk2PMA":3},{"article":4,"iocs":44,"watch_terms":48},{"id":5,"title":6,"slug":7,"summary":8,"ai_summary":9,"brief":10,"full_text":11,"url":12,"image_url":13,"published_at":14,"ingested_at":15,"relevance_score":16,"entities":17,"category_id":24,"category":25,"article_tags":28},"c30db4c4-560e-4053-9b17-08a8de606994","North Korea's Lazarus Targets macOS Users via ClickFix","north-korea-s-lazarus-targets-macos-users-via-clickfix-c61d15","Lazarus continues leveraging ClickFix for initial access and data theft, in this case, against Mac-centric organizations and their high-value leaders.","North Korea's Lazarus Group is actively exploiting ClickFix, a fake tech support scam, to compromise macOS systems and steal data from high-value targets within Mac-centric organizations. The campaign demonstrates the group's expansion of initial-access tactics beyond Windows platforms to target Apple users. This represents a continued evolution of Lazarus's social engineering and credential harvesting capabilities.","Lazarus Group targets macOS users via ClickFix for initial access and data theft.",null,"https:\u002F\u002Fwww.darkreading.com\u002Fthreat-intelligence\u002Fnorth-koreas-lazarus-targets-macos-users-clickfix","https:\u002F\u002Feu-images.contentstack.com\u002Fv3\u002Fassets\u002Fblt6d90778a997de1cd\u002Fblt955244a1688ad92a\u002F69ea733c149efc64d46724f4\u002FMouse_click_Alexey_Stiop_Alamy.jpg?width=1280&auto=webp&quality=80&disable=upscale","2026-04-24T13:00:00+00:00","2026-04-24T14:00:13.427025+00:00",8,[18,21],{"name":19,"type":20},"Lazarus Group","threat_actor",{"name":22,"type":23},"macOS","product","6cbdd207-aaa1-4176-9534-e156b125e917",{"id":24,"icon":11,"name":26,"slug":27},"Nation-state","nation-state",[29,34,39],{"category":30},{"id":31,"icon":11,"name":32,"slug":33},"2c8f44d4-b56e-47cf-9677-04f22c9ee78d","Identity & Access","identity-access",{"category":35},{"id":36,"icon":11,"name":37,"slug":38},"89f78b1c-3503-45a1-9fc7-e23d2ce1c6d5","Malware","malware",{"category":40},{"id":41,"icon":11,"name":42,"slug":43},"e7b231c8-5f79-4465-8d38-1ef13aea5a14","Threat Intelligence","threat-intelligence",[45],{"type":38,"value":46,"context":47},"ClickFix","Fake tech support scam used by Lazarus for initial access on macOS systems",[22]]