Home / Technology / AI-Powered Malware Hijacks Apple Macs via Fake Grok
AI-Powered Malware Hijacks Apple Macs via Fake Grok
13 Jan
Summary
- New macOS malware mimics Elon Musk's Grok AI chatbot.
- Malware uses AI-generated code and hides a crypto miner.
- Users are tricked into downloading from fake websites.

A new cybersecurity threat has emerged, masquerading as Elon Musk's Grok AI chatbot to infect Apple computers. Identified as the SimpleStealth campaign, this malware targets macOS users by presenting a convincing fake version of the xAI chatbot. Users are enticed to download an infected installer from a look-alike website, posing a significant risk.
The campaign reportedly utilizes a domain designed to mimic Grok's official presence, tricking unsuspecting individuals. Security researchers noted that the malware evaded detection by current antivirus programs, operating with hidden background processes. Notably, this threat may be among the first to incorporate generative AI code in its development, exhibiting characteristics typical of AI-generated scripts.
Once installed, the malware deploys a Monero cryptocurrency miner that operates discreetly, activating only during periods of Mac inactivity. This development raises concerns about generative AI accelerating malware creation and deployment. Experts advise users to download software exclusively from official app stores or directly from reputable companies to mitigate such risks and enhance overall cyber hygiene.



