home.social

#cyberhunter_nl — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #cyberhunter_nl, aggregated by home.social.

  1. PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence

    Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain. The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method. "Where earlier variants embedded their payload key material

    Pulse ID: 6ab699862ec3e91c17fbcb55
    Pulse Link: otx.alienvault.com/pulse/6ab69
    Pulse Author: CyberHunter_NL
    Created: 2026-09-25 15:55:49

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #MacOS #JavaScript #Malware #OTX #CyberHunter_NL

  2. PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence

    Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain. The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method. "Where earlier variants embedded their payload key material

    Pulse ID: 6ab699862ec3e91c17fbcb55
    Pulse Link: otx.alienvault.com/pulse/6ab69
    Pulse Author: CyberHunter_NL
    Created: 2026-09-25 15:55:49

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #MacOS #JavaScript #Malware #OTX #CyberHunter_NL

  3. PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence

    Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain. The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method. "Where earlier variants embedded their payload key material

    Pulse ID: 6ab699862ec3e91c17fbcb55
    Pulse Link: otx.alienvault.com/pulse/6ab69
    Pulse Author: CyberHunter_NL
    Created: 2026-09-25 15:55:49

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #MacOS #JavaScript #Malware #OTX #CyberHunter_NL

  4. PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence

    Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain. The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method. "Where earlier variants embedded their payload key material

    Pulse ID: 6ab699862ec3e91c17fbcb55
    Pulse Link: otx.alienvault.com/pulse/6ab69
    Pulse Author: CyberHunter_NL
    Created: 2026-09-25 15:55:49

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #MacOS #JavaScript #Malware #OTX #CyberHunter_NL