
New Malware Threats Target macOS, Zoom, and Smart Home Devices
A new malware strain named ClickLock Stealer targets macOS systems by disguising itself as a legitimate application to steal sensitive data, including browser credentials and cryptocurrency wallet information. Researchers at SentinelOne identified the threat, noting its use of AppleScript and Python for persistence and data exfiltration. On July 15, 2026, a critical vulnerability (CVE-2026-34567) in Zoom was disclosed, allowing attackers to hijack meetings via a crafted link without user interaction. Additionally, Shark AI Robot Vacuums running firmware versions 1.2.3 to 2.4.5 were found vulnerable to remote code execution (RCE) due to an unpatched flaw in their MQTT protocol implementation, enabling attackers to control devices or pivot into home networks.