Back to IntelRead Original Source
Intel Node
FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads
lowmalware2026-06-04T11:19:53+00:00source excerpt
malware
Source excerpt · The upstream feed supplied only part of this article.Read the original source →
Cybersecurity researchers have shed light on a macOS malvertising campaign codenamed Operation FlutterBridge that spreads a new backdoor called FlutterShell. According to Palo Alto Networks Unit 42, the campaign is said to be the next stage of a previously reported activity cluster dubbed JSCoreRunner (aka FileRipple) in late August 2025.