"Return of the mac(OS): Transparency, Consent, and Control (TCC) Database Manipulation" published by Interpressecurity. #APT37, #CloudMensis, #macOS, #JokerSpy, #CTI, #OSINT, #LAZARUS https://interpressecurity.com/resources/return-of-the-macos-tcc/
Return of the mac(OS): Transparency, Consent, and Control (TCC) Database Manipulation - Interpres Security

Interpres Security
The Mac Malware of 2023 đŸ‘Ÿ

"macOS Malware 2023 | A Deep Dive into Emerging Trends and Evolving Techniques" published by SentinelOne. #Trend, #JokerSpy, #RustBucket, #macOS, #CTI, #OSINT, #LAZARUS https://www.sentinelone.com/blog/macos-malware-2023-a-deep-dive-into-emerging-trends-and-evolving-techniques/
macOS Malware 2023 | A Deep Dive into Emerging Trends and Evolving Techniques

Apple’s security measures are evolving, but macOS malware is still one step ahead. Learn how to keep the Macs in your fleet safe from attackers.

SentinelOne
macOS Threat Hunting: Unraveling RustBucket Malware Tactics

Master macOS threat hunting by delving into RustBucket malware analysis. Discover tactics of the notorious BlueNoroff APT and equip yourself with defense strategies.

"DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments" published by JPCERT. #DangerousPassword, #JokerSpy, #CTI, #OSINT, #LAZARUS https://blogs.jpcert.or.jp/en/2023/07/dangerouspassword_dev.html
DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments - JPCERT/CC Eyes

At the end of May 2023, JPCERT/CC confirmed an attack targeting developers of cryptocurrency exchange businesses, and it is considered to be related to the targeted attack group DangerousPassword [1], [2] (a.k.a. CryptoMimic or SnatchCrypto), which has been continuously attacking...

JPCERT/CC Eyes
"開ç™șè€…ăźWindows、macOS、Linux環汃を狙ったDangerousPasswordă«ă‚ˆă‚‹æ”»æ’ƒ" published by JPCERT. #DangerousPassword, #JokerSpy, #CTI, #OSINT, #LAZARUS https://blogs.jpcert.or.jp/ja/2023/07/dangerouspassword_dev.html
開ç™șè€…ăźWindows、macOS、Linux環汃を狙ったDangerousPasswordă«ă‚ˆă‚‹æ”»æ’ƒ - JPCERT/CC Eyes

JPCERT/CCは、2019ćčŽ6æœˆă‹ă‚‰ç¶™ç¶šă—ăŠæ”»æ’ƒă‚’èĄŒăŁăŠă„ă‚‹æš™çš„ćž‹æ”»æ’ƒă‚°ăƒ«ăƒŒ...

JPCERT/CC Eyes
A new and strange #macOS #malware called #JokerSpy has been identified, with its first known #backdoor creation hitting a #crypto #exchange. https://tchlp.com/3JyYWj7
JokerSpy macOS malware used to attack Japanese crypto exchange

A new and strange macOS malware called "JokerSpy" has been identified, with its first known backdoor creation hitting a crypto exchange.

AppleInsider
JOKERSPY used to target a cryptocurrency exchange in Japan

An unnamed Japanese cryptocurrency exchange was the victim of a cyber attack aimed at deploying an Apple macOS backdoor named JokerSpy. Elastic Security Labs researchers provided details about a recently discovered intrusion at an unnamed cryptocurrency exchange, aimed at deploying an Apple macOS backdoor named JokerSpy. The researchers tracked the intrusion as REF9134, the threat [
]

Security Affairs
JokerSpy: Sicherheitsfirma sieht Hinweise fĂŒr grĂ¶ĂŸeren Angriff auf macOS

Eine angeblich weitestgehend unentdeckte Cross-Plattform-Backdoor zielt auch auf Macs ab. Die Analyse von Bestandteilen deute auf komplexere Malware hin.

heise online