MacPaw's latest research introduces an on -device, real-time phishing detection system to improve Mac users' cybersecurity.
See also: New phishing campaign distributes Poco RAT

Ivan Petrukha, Senior Research Engineer at MacPaw, is presenting research on this phishing detection system at the 14th International Workshop on Socio-Technical Aspects in Security on July 12.
Moonlock’s on-device solution detects phishing websites instantly using a report-based approach to visual content analysis. The system is based on local machine learning models, ensuring that user data remains on the device and enhancing privacy.
Leveraging macOS-specific resources, the system quickly processes live screen captures, maintaining high accuracy and low resource usage — 16% of CPU and less than 84 MB of RAM on an Apple M1 processor. MacPaw's solution achieved 95.7% accuracy and 87.7% recall on a dataset of 50,000 web pages.
Phishing, which MacPaw is trying to identify, is a cyberattack method where malicious actors impersonate legitimate entities to trick people into sharing sensitive information, such as passwords, credit card numbers, and personal information. These attacks often occur through deceptive emails, websites, or messages that appear trustworthy but are designed to steal data or install malware on the victim's device.
See also: Only one-fifth of organizations have stronger phishing protection

As phishing techniques become more sophisticated, traditional detection methods struggle to keep up, making real-time, on-device solutions increasingly vital to strong cybersecurity.
Blacklist-based solutions have update delays, classification-based approaches struggle with obfuscation, and report-based methods depend on slow external databases.
MacPaw's system works in real time, directly on the device, eliminating these delays and enhancing security against phishing. It has the ability to adapt to iOS and other applications, such as email and messaging platforms.
It's not yet known how Mac users can take advantage of MacPaw's phishing detection system, but the company has apps like CleanMyMac X that act as a malware detection tool, among other features. CleanMyMac X requires macOS 10.13 or later.
See also: Mercku support portal sends MetaMask phishing emails
Phishing attacks, which MacPaw is trying to detect, are one of the most common forms of online threats and are designed to trick users into revealing personal information, such as passwords and credit card details. Typically, attackers use social engineering techniques, sending deceptive emails or messages that appear to come from trusted sources. It is critical for users to maintain a high level of vigilance and confirm the authenticity of any request for personal information before responding.
Source: appleinsider
🔑 Secure your passwords with Proton Pass
Password manager from Proton — end-to-end encryption, passkeys, built-in 2FA, and monitoring for leaks of your credentials.
- ✔ Encrypted storage of passwords & passkeys
- ✔ Notification if any of your passwords are leaked (Dark Web Monitoring)
- ✔ Free version — on all devices
The link is an affiliate link — SecNews may receive a commission at no additional cost to you. It does not affect the independence of our article writing.
