Back to Intel

Intel Node

FlutterShell Backdoor Spreads to macOS via Malicious Google and YouTube Ads

lowmalware2026-06-04T11:19:53+00:00source excerpt
malware

Source excerpt · The upstream feed supplied only part of this article.Read the original source →

Cybersecurity researchers have shed light on a macOS malvertising campaign codenamed Operation FlutterBridge that spreads a new backdoor called FlutterShell. According to Palo Alto Networks Unit 42, the campaign is said to be the next stage of a previously reported activity cluster dubbed JSCoreRunner (aka FileRipple) in late August 2025.

Read Original Source