Tag: applescript
4 articles

PamStealer Malware Evolves with Live C2 Decryption and Enhanced Persistence
Meet the latest variant of PamStealer malware, which has evolved with a sneaky new trick: it can only be decrypted through a live command-and-control session, making it even harder to track and stop. This fresh threat uses a fake cryptocurrency wallet site, wavel.app, to lure victims into downloading a malicious disk image file.

XCSSET Malware Evolves With Advanced Evasion Tactics
Malicious hackers have unleashed a powerful new version of XCSSET malware that can turn unsuspecting developer workstations into launchpads for supply-chain attacks, infecting thousands of users through poisoned Xcode projects. This latest variant, XCSSET v40, uses advanced evasion tactics to spread rapidly and quietly.

SHub Infostealer Variant Reaper Exploits macOS Security Updates
Researchers at SentinelOne have uncovered a sneaky new variant of the SHub macOS infostealer, called Reaper, which cleverly bypasses Apple's latest security updates by using a malicious AppleScript to trick users. This crafty malware uses fake installers to lure victims in, making it a serious threat to macOS users.

macOS ClickFix Attacks Harvest Credentials via AppleScript Stealers
macOS users beware: a sneaky ClickFix campaign is using AppleScript stealers to harvest credentials from 14 browsers, 16 cryptocurrency wallets, and over 200 extensions. This targeted attack has already made off with a staggering amount of sensitive info - and it's still on the loose.