#macosmalware — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #macosmalware, aggregated by home.social.
-
North Korean hackers use new macOS malware in crypto-theft attacks
North Korean hackers use new macOS malware in crypto-theft attacks
#Northkoreanhackers #Macosmalwarehttps://opr.news/6f20d50260210en_us?link=1&client=ex_global
Download Now
https://opr.as/share -
XCSSET Malware Mutates Again, Expands Its Reach to Firefox and Crypto Theft https://thecyberexpress.com/xcsset-malware-mutates-to-reach-firefox/ #FirewallDaily #macOSmalware #CyberNews #XCSSET #macOS
-
XCSSET Malware Mutates Again, Expands Its Reach to Firefox and Crypto Theft https://thecyberexpress.com/xcsset-malware-mutates-to-reach-firefox/ #FirewallDaily #macOSmalware #CyberNews #XCSSET #macOS
-
XCSSET Malware Mutates Again, Expands Its Reach to Firefox and Crypto Theft https://thecyberexpress.com/xcsset-malware-mutates-to-reach-firefox/ #FirewallDaily #macOSmalware #CyberNews #XCSSET #macOS
-
XCSSET Malware Mutates Again, Expands Its Reach to Firefox and Crypto Theft https://thecyberexpress.com/xcsset-malware-mutates-to-reach-firefox/ #FirewallDaily #macOSmalware #CyberNews #XCSSET #macOS
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
New XCSSET macOS Malware Variant Hijacks Cryptocurrency Transactions https://www.securityweek.com/new-xcsset-macos-malware-variant-hijacks-cryptocurrency-transactions/ #Malware&Threats #cryptojacking #macOSmalware #malware #XCSSET
-
Xcode devs, beware: a new macOS malware variant is sneaking into projects by disguising itself as a trusted app—and even hijacking clipboard crypto transactions. Curious how it evades detection?
#xcsset
#macosmalware
#xcode
#supplychainattack
#cybersecurity
#malwareanalysis
#obfuscation
#cryptotheft
#browsersecurity -
Xcode devs, beware: a new macOS malware variant is sneaking into projects by disguising itself as a trusted app—and even hijacking clipboard crypto transactions. Curious how it evades detection?
#xcsset
#macosmalware
#xcode
#supplychainattack
#cybersecurity
#malwareanalysis
#obfuscation
#cryptotheft
#browsersecurity -
Xcode devs, beware: a new macOS malware variant is sneaking into projects by disguising itself as a trusted app—and even hijacking clipboard crypto transactions. Curious how it evades detection?
#xcsset
#macosmalware
#xcode
#supplychainattack
#cybersecurity
#malwareanalysis
#obfuscation
#cryptotheft
#browsersecurity -
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Widespread Infostealer Campaign Targeting macOS Users https://www.securityweek.com/widespread-infostealer-campaign-targeting-macos-users/ #Malware&Threats #macOSmalware #infostealer #Featured #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Hundreds Targeted in New Atomic macOS Stealer Campaign https://www.securityweek.com/hundreds-targeted-in-new-atomic-macos-stealer-campaign/ #Malware&Threats #macOSmalware #SHAMOS #AMOS
-
Moonlock analysed Mac.c stealer, a new rival to AMOS. Learn its tactics, code reuse, and "building in public" strategy. https://hackernoon.com/macc-stealer-takes-on-amos-a-new-rival-shakes-up-the-macos-infostealer-market #macosmalware
-
Moonlock analysed Mac.c stealer, a new rival to AMOS. Learn its tactics, code reuse, and "building in public" strategy. https://hackernoon.com/macc-stealer-takes-on-amos-a-new-rival-shakes-up-the-macos-infostealer-market #macosmalware
-
Moonlock analysed Mac.c stealer, a new rival to AMOS. Learn its tactics, code reuse, and "building in public" strategy. https://hackernoon.com/macc-stealer-takes-on-amos-a-new-rival-shakes-up-the-macos-infostealer-market #macosmalware
-
Moonlock analysed Mac.c stealer, a new rival to AMOS. Learn its tactics, code reuse, and "building in public" strategy. https://hackernoon.com/macc-stealer-takes-on-amos-a-new-rival-shakes-up-the-macos-infostealer-market #macosmalware
-
Moonlock analysed Mac.c stealer, a new rival to AMOS. Learn its tactics, code reuse, and "building in public" strategy. https://hackernoon.com/macc-stealer-takes-on-amos-a-new-rival-shakes-up-the-macos-infostealer-market #macosmalware
-
Nowe złośliwe oprogramowanie „NimDoor” atakuje użytkowników macOS
Zespół SentinelLabs ujawnił kampanię hakerską prowadzoną przez grupę powiązaną z Koreą Północną (DPRK), która wykorzystuje fałszywe zaproszenia Zoom do infekowania komputerów Mac złośliwym oprogramowaniem nazwanym NimDoor.
To jeden z najbardziej zaawansowanych ataków na macOS, skierowany głównie w startupy z sektora Web3 i kryptowalut.
Jak działa atak?
- Podszywanie się pod znajomego na Telegramie – ofiara zapraszana jest na spotkanie przez Calendly.
- W e-mailu pojawia się fałszywy link do aktualizacji SDK Zooma – zawiera plik z ponad 10 000 pustych linii kodu, by ukryć funkcję.
- Po uruchomieniu, malware:
- nawiązuje zaszyfrowane połączenie przez WebSocket Secure (wss) z serwerem kontrolującym,
- utrzymuje dostęp po restarcie systemu, wykorzystując sygnały SIGINT/SIGTERM,
- eksportuje dane z Keychaina, przeglądarek i Telegrama przy użyciu skryptów Bash,
- wykorzystuje AppleScript i język Nim, co jest rzadkością w malware na macOS.
Co czyni NimDoor wyjątkowym? Wykorzystuje język Nim – bardziej złożony i mniej wykrywany niż typowe Go, Python czy Bash. Wprowadza też nową technikę trwałości, działającą nawet po restarcie systemu. Posiada ponadto rozbudowany łańcuch infekcji, od socjotechniki po wieloetapowe backdoory.
Fałszywy plik aktualizacji zawiera ukryty kod, utrudniając analizę i wykrycie.
Jak się zabezpieczyć?
- Nie pobieraj aktualizacji Zooma (ani innych aplikacji) spoza oficjalnych źródeł.
- Zgłaszaj podejrzane zaproszenia do spotkań otrzymane przez Telegram lub e-mail.
- Regularnie aktualizuj macOS i oprogramowanie zabezpieczające.
- Używaj menedżera haseł i weryfikacji dwuetapowej.
#AppleScriptMalware #atakNaWeb3 #BashExfiltration #fakeZoomSDK #hakerzyZKoreiPółnocnej #kryptowalutyBezpieczeństwo #macOSMalware #macOSSpyware2025 #macOSZabezpieczenia #malwareNim #NimDoor #SentinelLabsRaport #zagrożeniaDlaStartupów #ZoomFałszywaAktualizacja
-
macOS Users Warned of New Versions of ReaderUpdate Malware – Source: www.securityweek.com https://ciso2ciso.com/macos-users-warned-of-new-versions-of-readerupdate-malware-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #Malware&Threats #securityweekcom #macOSmalware #ReaderUpdate #securityweek #Malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware – Source: www.securityweek.com https://ciso2ciso.com/macos-users-warned-of-new-versions-of-readerupdate-malware-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #Malware&Threats #securityweekcom #macOSmalware #ReaderUpdate #securityweek #Malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware – Source: www.securityweek.com https://ciso2ciso.com/macos-users-warned-of-new-versions-of-readerupdate-malware-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #Malware&Threats #securityweekcom #macOSmalware #ReaderUpdate #securityweek #Malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware – Source: www.securityweek.com https://ciso2ciso.com/macos-users-warned-of-new-versions-of-readerupdate-malware-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #Malware&Threats #securityweekcom #macOSmalware #ReaderUpdate #securityweek #Malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware https://www.securityweek.com/macos-users-warned-of-new-versions-of-readerupdate-malware/ #Malware&Threats #macOSmalware #ReaderUpdate #malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware https://www.securityweek.com/macos-users-warned-of-new-versions-of-readerupdate-malware/ #Malware&Threats #macOSmalware #ReaderUpdate #malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware https://www.securityweek.com/macos-users-warned-of-new-versions-of-readerupdate-malware/ #Malware&Threats #macOSmalware #ReaderUpdate #malware #adware
-
macOS Users Warned of New Versions of ReaderUpdate Malware https://www.securityweek.com/macos-users-warned-of-new-versions-of-readerupdate-malware/ #Malware&Threats #macOSmalware #ReaderUpdate #malware #adware
-
Albabat Ransomware Expands Targets, Abuses GitHub – Source: www.securityweek.com https://ciso2ciso.com/albabat-ransomware-expands-targets-abuses-github-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #securityweekcom #Linuxmalware #macOSmalware #securityweek #ransomware #Albabat
-
Albabat Ransomware Expands Targets, Abuses GitHub – Source: www.securityweek.com https://ciso2ciso.com/albabat-ransomware-expands-targets-abuses-github-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #securityweekcom #Linuxmalware #macOSmalware #securityweek #ransomware #Albabat
-
Albabat Ransomware Expands Targets, Abuses GitHub – Source: www.securityweek.com https://ciso2ciso.com/albabat-ransomware-expands-targets-abuses-github-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #securityweekcom #Linuxmalware #macOSmalware #securityweek #ransomware #Albabat
-
Albabat Ransomware Expands Targets, Abuses GitHub – Source: www.securityweek.com https://ciso2ciso.com/albabat-ransomware-expands-targets-abuses-github-source-www-securityweek-com/ #rssfeedpostgeneratorecho #CyberSecurityNews #securityweekcom #Linuxmalware #macOSmalware #securityweek #ransomware #Albabat