"Return of the mac(OS): Transparency, Consent, and Control (TCC) Database Manipulation" published by Interpressecurity.
#APT37,
#CloudMensis,
#macOS,
#JokerSpy,
#CTI,
#OSINT,
#LAZARUS https://interpressecurity.com/resources/return-of-the-macos-tcc/
Return of the mac(OS): Transparency, Consent, and Control (TCC) Database Manipulation - Interpres Security
Interpres Security
The Mac Malware of 2023 👾

macOS Malware 2023 | A Deep Dive into Emerging Trends and Evolving Techniques
Apple’s security measures are evolving, but macOS malware is still one step ahead. Learn how to keep the Macs in your fleet safe from attackers.
SentinelOne
macOS Threat Hunting: Unraveling RustBucket Malware Tactics
Master macOS threat hunting by delving into RustBucket malware analysis. Discover tactics of the notorious BlueNoroff APT and equip yourself with defense strategies.
"DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments" published by JPCERT.
#DangerousPassword,
#JokerSpy,
#CTI,
#OSINT,
#LAZARUS https://blogs.jpcert.or.jp/en/2023/07/dangerouspassword_dev.html
DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments - JPCERT/CC Eyes
At the end of May 2023, JPCERT/CC confirmed an attack targeting developers of cryptocurrency exchange businesses, and it is considered to be related to the targeted attack group DangerousPassword [1], [2] (a.k.a. CryptoMimic or SnatchCrypto), which has been continuously attacking...
JPCERT/CC Eyes
開発者のWindows、macOS、Linux環境を狙ったDangerousPasswordによる攻撃 - JPCERT/CC Eyes
JPCERT/CCは、2019年6月から継続して攻撃を行っている標的型攻撃グルー...
JPCERT/CC EyesA new and strange
#macOS #malware called
#JokerSpy has been identified, with its first known
#backdoor creation hitting a
#crypto #exchange.
https://tchlp.com/3JyYWj7
JokerSpy macOS malware used to attack Japanese crypto exchange
A new and strange macOS malware called "JokerSpy" has been identified, with its first known backdoor creation hitting a crypto exchange.
AppleInsiderJOKERSPY used to target a cryptocurrency exchange in Japan
An unnamed Japanese cryptocurrency exchange was the victim of a cyber attack aimed at deploying an Apple macOS backdoor named JokerSpy. Elastic Security Labs researchers provided details about a recently discovered intrusion at an unnamed cryptocurrency exchange, aimed at deploying an Apple macOS backdoor named JokerSpy. The researchers tracked the intrusion as REF9134, the threat […]
Security Affairs
JokerSpy: Sicherheitsfirma sieht Hinweise für größeren Angriff auf macOS
Eine angeblich weitestgehend unentdeckte Cross-Plattform-Backdoor zielt auch auf Macs ab. Die Analyse von Bestandteilen deute auf komplexere Malware hin.
heise online