#clipboard — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #clipboard, aggregated by home.social.
-
@FreakyFwoof Downloaded. Will let you know how it goes.
-
@FreakyFwoof Downloaded. Will let you know how it goes.
-
@FreakyFwoof Downloaded. Will let you know how it goes.
-
@FreakyFwoof Downloaded. Will let you know how it goes.
-
@FreakyFwoof Downloaded. Will let you know how it goes.
-
Contagious Interview steps outside the developer workflow
Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.
Pulse ID: 6a99efa1445d8ef021e25d53
Pulse Link: https://otx.alienvault.com/pulse/6a99efa1445d8ef021e25d53
Pulse Author: AlienVault
Created: 2026-09-03 22:07:29Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault
-
Contagious Interview steps outside the developer workflow
Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.
Pulse ID: 6a99efa1445d8ef021e25d53
Pulse Link: https://otx.alienvault.com/pulse/6a99efa1445d8ef021e25d53
Pulse Author: AlienVault
Created: 2026-09-03 22:07:29Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault
-
Contagious Interview steps outside the developer workflow
Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.
Pulse ID: 6a99efa1445d8ef021e25d53
Pulse Link: https://otx.alienvault.com/pulse/6a99efa1445d8ef021e25d53
Pulse Author: AlienVault
Created: 2026-09-03 22:07:29Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault
-
Contagious Interview steps outside the developer workflow
Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.
Pulse ID: 6a99efa1445d8ef021e25d53
Pulse Link: https://otx.alienvault.com/pulse/6a99efa1445d8ef021e25d53
Pulse Author: AlienVault
Created: 2026-09-03 22:07:29Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault
-
Contagious Interview steps outside the developer workflow
Jamf Threat Labs discovered a cluster of 14 trojanized macOS applications distributed as DMG and PKG files impersonating legitimate software like The Unarchiver, Sketch, and Bartender. These samples are linked to the Contagious Interview campaign, a DPRK-attributed operation using fake job interviews as a pretext. The malware chain begins with unsigned, modified applications containing hidden executables that download staging scripts from infrastructure at 162.0.239[.]85. The attack progresses through multiple stages, ultimately deploying OtterCookie malware, which provides remote access capabilities, credential stealing from browsers and crypto wallets, filesystem scanning, and clipboard monitoring. The delivery method represents an evolution from previous Git hook and VS Code task-based attacks to standalone installer packages requiring manual quarantine attribute removal to execute.
Pulse ID: 6a99efa1445d8ef021e25d53
Pulse Link: https://otx.alienvault.com/pulse/6a99efa1445d8ef021e25d53
Pulse Author: AlienVault
Created: 2026-09-03 22:07:29Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #Clipboard #CyberSecurity #DPRK #InfoSec #Mac #MacOS #Malware #OTX #OpenThreatExchange #RAT #Trojan #bot #AlienVault