Fast Company
Follow
Apple users beware: This ‘copy-paste’ scam could allow someone to take control of your Mac
The Apple copy-paste scam is a tactic used by scammers to trick Mac users into granting them remote access to their computers. This scam involves getting the user to copy and paste a specific command into the Terminal app, which can install malware or grant the scammer access to the user's data. The Terminal app is a powerful tool for advanced Mac users, but using it without proper knowledge can cause unintended consequences. Scammers use social engineering to trick users into entering specific Terminal commands, allowing them to carry out their attack. The scammer's instructions often begin by telling the user to open the Terminal app and enter one or more specific commands, ostensibly to help secure the Mac or fix an issue. However, these commands can grant the scammer remote access to the Mac or allow them to extract sensitive data. To protect themselves, users should never enter a command into the Terminal until they have personally verified what it will do. Apple has added protections against the copy-paste scam in macOS 26.4, which includes a "Possible malware, paste blocked" alert when a user tries to paste a command from a website, chatbot, or messaging or email app. If the Terminal detects a command or script containing malware, it will automatically block it and show a notification. Users should be cautious of pressure tactics, including a false sense of urgency, and not blindly trust commands found on websites or recommended by chatbots.