home.social

#atomicstealer — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #atomicstealer, aggregated by home.social.

fetched live
  1. ah ben voilà, je me disais : quand est-ce que le bon vieux AppleScript allait être intégré dans les campagnes ClickFix visant macOS ?

    Il aura fallu qu’Apple introduise sa nouvelle fonctionnalité de protection du copier/coller dans le Terminal
    ( d'ailleurs et comme d'hab 😁 « largement inspirée », par le travail de Patrick Wardle dans blockblock :
    objective-see.org/blog/blog_0x )

    …pour que la campagne Atomic Stealer passe à Script Editor.
    ⬇️
    ClickFix technique uses Script Editor instead of Terminal on macOS
    Jamf Threat Labs discovered a ClickFix-style macOS attack that abuses the applescript:// URL scheme to launch Script Editor and deliver an Atomic Stealer infostealer payload — bypassing Terminal entirely.
    👇
    jamf.com/blog/clickfix-macos-s

    #cyberveille #macos #atomicstealer

  2. Forschende von Jamf Threat berichten heute über eine neue Variante einer bekannten Cyberangriffsmethode. Der Angriff zielt auf Mac-Nutzende ab und nutzt eine ziemlich geschickte Täuschung, um Schadsoftware auf den Mac zu schleusen.

    Mehr: digiprax.maniabel.work/archiv/

    #infostealer #AtomicStealer #jamf #infosec #up2date #macOS #ScriptEditor #ClickFix

  3. Malicious ad for Arc browser -> #AtomicStealer

    arcthost[.]org
    arc-download[.]com
    zestyahhdog[.]com/Arc12645413[.]dmg

    C2: 79.137.192[.]4/p2p

    #malvertising #threatintel

  4. 🚨 Malicious Zoom ad for Mac & Windows 🚨

    Google ad ➡️ Fake Zoom site ➡️ Payload🔑

    🤓 Fake advertiser: Jessica Babcok
    ⚠️ Zoom site: zocmstranslate[.]com

    🔹Mac (#atomicstealer, C2: 5.182.86[.]95)
    🔹Windows (#LummaStealer, C2: stiffraspyofkwsl[.]shop)

    #malvertising #threatintel

  5. Jamf warns of two ongoing infostealer campaigns target macOS environments: Atomic Stealer being spread through Sponsored Ads (malvertising) and the attempted execution of an unsigned executable with a bad hash from Meethub. "Many of these stealers are targeting individuals involved in the crypto industry with a focus on harvesting credentials along with data from various crypto wallets." Attack chains described, IOC provided. 🔗 jamf.com/blog/infostealers-pos

    #infostealer #threatintel #IOC #AtomicStealer #Meethub

  6. It’s not all rosy in the land of macOS, as a new malware variant has been discovered that explicitly targets Apple users. Luckily, there are things you can do to protect yourself.

    #apple #macos #malware #atomicstealer
    tchlp.com/46CY9GC

  7. Only 10 days into October and still lots of new #macOS #apple #AtomicStealer variants all over VT.
    57 and counting...
    Want to play? See the updated #malware IOCs for October here:
    https:/s1.ai/amos