"Return of the mac(OS): Transparency, Consent, and Control (TCC) Database Manipulation" published by Interpressecurity. #APT37, #CloudMensis, #macOS, #JokerSpy, #CTI, #OSINT, #LAZARUS https://interpressecurity.com/resources/return-of-the-macos-tcc/
Return of the mac(OS): Transparency, Consent, and Control (TCC) Database Manipulation - Interpres Security

Interpres Security
The Mac Malware of 2023 👾

"macOS Malware 2023 | A Deep Dive into Emerging Trends and Evolving Techniques" published by SentinelOne. #Trend, #JokerSpy, #RustBucket, #macOS, #CTI, #OSINT, #LAZARUS https://www.sentinelone.com/blog/macos-malware-2023-a-deep-dive-into-emerging-trends-and-evolving-techniques/
macOS Malware 2023 | A Deep Dive into Emerging Trends and Evolving Techniques

Apple’s security measures are evolving, but macOS malware is still one step ahead. Learn how to keep the Macs in your fleet safe from attackers.

SentinelOne
macOS Threat Hunting: Unraveling RustBucket Malware Tactics

Master macOS threat hunting by delving into RustBucket malware analysis. Discover tactics of the notorious BlueNoroff APT and equip yourself with defense strategies.

"DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments" published by JPCERT. #DangerousPassword, #JokerSpy, #CTI, #OSINT, #LAZARUS https://blogs.jpcert.or.jp/en/2023/07/dangerouspassword_dev.html
DangerousPassword attacks targeting developers’ Windows, macOS, and Linux environments - JPCERT/CC Eyes

At the end of May 2023, JPCERT/CC confirmed an attack targeting developers of cryptocurrency exchange businesses, and it is considered to be related to the targeted attack group DangerousPassword [1], [2] (a.k.a. CryptoMimic or SnatchCrypto), which has been continuously attacking...

JPCERT/CC Eyes
"開発者のWindows、macOS、Linux環境を狙ったDangerousPasswordによる攻撃" published by JPCERT. #DangerousPassword, #JokerSpy, #CTI, #OSINT, #LAZARUS https://blogs.jpcert.or.jp/ja/2023/07/dangerouspassword_dev.html
開発者のWindows、macOS、Linux環境を狙ったDangerousPasswordによる攻撃 - JPCERT/CC Eyes

JPCERT/CCは、2019年6月から継続して攻撃を行っている標的型攻撃グルー...

JPCERT/CC Eyes
A new and strange #macOS #malware called #JokerSpy has been identified, with its first known #backdoor creation hitting a #crypto #exchange. https://tchlp.com/3JyYWj7
JokerSpy macOS malware used to attack Japanese crypto exchange

A new and strange macOS malware called "JokerSpy" has been identified, with its first known backdoor creation hitting a crypto exchange.

AppleInsider
JOKERSPY used to target a cryptocurrency exchange in Japan

An unnamed Japanese cryptocurrency exchange was the victim of a cyber attack aimed at deploying an Apple macOS backdoor named JokerSpy. Elastic Security Labs researchers provided details about a recently discovered intrusion at an unnamed cryptocurrency exchange, aimed at deploying an Apple macOS backdoor named JokerSpy. The researchers tracked the intrusion as REF9134, the threat […]

Security Affairs
JokerSpy: Sicherheitsfirma sieht Hinweise für größeren Angriff auf macOS

Eine angeblich weitestgehend unentdeckte Cross-Plattform-Backdoor zielt auch auf Macs ab. Die Analyse von Bestandteilen deute auf komplexere Malware hin.

heise online