home.social

#clipboard — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #clipboard, aggregated by home.social.

  1. Contagious Interview steps outside the developer workflow

    Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.

    Pulse ID: 6a99efa1445d8ef021e25d53
    Pulse Link: otx.alienvault.com/pulse/6a99e
    Pulse Author: AlienVault
    Created: 2026-09-03 22:07:29

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault

  2. Contagious Interview steps outside the developer workflow

    Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.

    Pulse ID: 6a99efa1445d8ef021e25d53
    Pulse Link: otx.alienvault.com/pulse/6a99e
    Pulse Author: AlienVault
    Created: 2026-09-03 22:07:29

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault

  3. Contagious Interview steps outside the developer workflow

    Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.

    Pulse ID: 6a99efa1445d8ef021e25d53
    Pulse Link: otx.alienvault.com/pulse/6a99e
    Pulse Author: AlienVault
    Created: 2026-09-03 22:07:29

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault

  4. Contagious Interview steps outside the developer workflow

    Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.

    Pulse ID: 6a99efa1445d8ef021e25d53
    Pulse Link: otx.alienvault.com/pulse/6a99e
    Pulse Author: AlienVault
    Created: 2026-09-03 22:07:29

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault

  5. Contagious Interview steps outside the developer workflow

    Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.

    Pulse ID: 6a99efa1445d8ef021e25d53
    Pulse Link: otx.alienvault.com/pulse/6a99e
    Pulse Author: AlienVault
    Created: 2026-09-03 22:07:29

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault

  6. Nurse Egee’s Visual & Hearing Exam!

    https://youtu.be/3XH9P3Y5cmw Hello Flufferschnoots! I thought you might enjoy a relaxing vision and hearing exam from the one and only Nurse Egee. I produced this last month in August and it came from a whim. Hospital scrubs showed up in my shopping listing and I though "heh, I bet I could play Nurse Egee in a video..." This roleplay was meant to be more of a "Cranial Nerve Exam" but I went a little overboard with it. Hope you enjoy this roleplay! If you'd like to support me in my […]

    egee.xyz/2025/09/05/nurse-egee