


Perceptive Security
SOC/SIEM Consultancy

Operation FlutterBridge: macOS Malvertising Campaign Spreads New FlutterShell Backdoor
Published:
2 June 2026 at 10:00:31
Alert date:
2 June 2026 at 12:01:51
Source:
unit42.paloaltonetworks.com
Operating Systems, Ransomware & Malware
Operation FlutterBridge is a malvertising campaign specifically targeting macOS users. The campaign distributes a new backdoor called FlutterShell, which is built using the Flutter framework. This represents a novel approach to macOS malware distribution through malicious advertising. The use of Flutter framework for backdoor development is a notable technique. The campaign demonstrates ongoing threats against Apple's macOS platform through web-based attack vectors.
Technical details
Mitigation steps:
Affected products:
macOS
Related links:
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
