Cracked software beats gold: new macOS backdoor stealing cryptowallets [Wednesday, January 24, 2024]

A month ago, we discovered some cracked apps circulating on pirating websites and infected with a Trojan proxy. The malicious actors repackaged pre...
Cracked software beats gold: new macOS backdoor stealing cryptowallets [Wednesday, January 24, 2024]
Cracked software beats gold: new macOS backdoor stealing cryptowallets
Report

Cracked software beats gold: new macOS backdoor stealing cryptowallets

Description :
A month ago, we discovered some cracked apps circulating on pirating websites and infected with a Trojan proxy. The malicious actors repackaged pre-cracked applications as PKG files with an embedded Trojan proxy and a post-install script initiating the infection. We recently caught sight of a new, hitherto unknown, macOS malware family that was piggybacking on cracked software. The threat proved far more potent than an unauthorized proxy server installation.

Published Created Modified
2024-01-24 17:37:06 2024-01-24 17:37:06 2024-01-24 18:02:27

Tags

Indicators

Domains :
  • imohub.net
  • apple-analyser.com
  • apple-health.org
MITRE ATT&CK Techniques :

External References

You can download the txt file containing the indicators by clicking on the button below:

About the author
Julien B.

Securitricks

Up-to-Date Cybersecurity Insights & Malware Reports

Securitricks

Great! You’ve successfully signed up.

Welcome back! You've successfully signed in.

You've successfully subscribed to Securitricks.

Success! Check your email for magic link to sign-in.

Success! Your billing info has been updated.

Your billing was not updated.