📱 Sapphire Sleet : campagne macOS sophistiquĂ©e ciblant cryptomonnaies via ingĂ©nierie sociale
📝 ## 🔍 Contexte

Le 16 avril 2026, la Microsoft Defender Security Resea...
📖 cyberveille : https://cyberveille.ch/posts/2026-04-16-sapphire-sleet-campagne-macos-sophistiquee-ciblant-cryptomonnaies-via-ingenierie-sociale/
🌐 source : https://www.microsoft.com/en-us/security/blog/2026/04/16/dissecting-sapphire-sleets-macos-intrusion-from-lure-to-compromise/
#AppleScript #IOC #Cyberveille

Sapphire Sleet : campagne macOS sophistiquée ciblant cryptomonnaies via ingénierie sociale

🔍 Contexte Le 16 avril 2026, la Microsoft Defender Security Research Team publie une analyse technique dĂ©taillĂ©e d’une campagne macOS attribuĂ©e Ă  Sapphire Sleet, un acteur Ă©tatique nord-corĂ©en actif depuis au moins mars 2020, ciblant principalement le secteur financier, les cryptomonnaies, le capital-risque et les plateformes blockchain. 🎯 Vecteur d’accĂšs initial L’attaque repose sur de l’ingĂ©nierie sociale et non sur des vulnĂ©rabilitĂ©s logicielles. L’acteur crĂ©e de faux profils de recruteurs sur les rĂ©seaux sociaux et professionnels, engage les cibles dans des conversations sur des opportunitĂ©s d’emploi, puis les dirige vers le tĂ©lĂ©chargement d’un fichier malveillant nommĂ© Zoom SDK Update.scpt — un AppleScript compilĂ© s’ouvrant dans Script Editor, application Apple de confiance.

CyberVeille

The Scripting & Automation guide is now up https://faq.pockity.app/scripting/ #macOS #AppleScript

If you spot any mistakes, please let me know!

Scripting & Automation - Pockity

A new beta (v2026.4) is now available for Pockity for #macOS which brings #AppleScript support to the app enabling powerful automations.

Here's a video demo of what this looks like.

All ledgers, entries, accounts, and categories are queryable.

Neuer Blog-Artikel: "TÀgliche Notiz von NotePlan via Raycast ergÀnzen" (Plus-Artikel) - https://jasinski.info/2026/03/24/taegliche-notiz-von-noteplan-via-raycast-ergaenzen/?ycfms=MD

Schnell via #Raycast eine neue Journal-Zeile in die tÀgliche Notiz von #NotePlan reinfeuern, ohne dass NotePlan dazu in den Vordergrund kommt. So kann ich ablenkungsfrei möglichst schnell weiterarbeiten. Wurde möglich, weil NotePlan in der neuen Version den #AppleScript-Support auf einen völlig neuen Level gebracht hat.

TÀgliche Notiz von NotePlan via Raycast ergÀnzen - Get Organized - NÞrdnotizen von Dr. Markus Jasinski

NotePlan ist immer noch mein PKM-System (Personal Knowledge Management), kommt mit integriertem Aufgaben-Manager und Kalender.

NĂžrdnotizen von Dr. Markus Jasinski
Modern LLMs are incredible. Yesterday in the course of 2-3 hours I was able to have it code a simple Numbers App MCP server based on the #Apple #AppleScript .sdef definition file and enable #claude to interact with #numbers documents directly!
Dialog Toolkit, InDesign and paste peculiarity

Good old Pashua will not survive when Apple ditches Rosetta in next OS. So I am rewriting all dialogue boxes. When scripting InDesign and putting my scripts in the Script Panel I have this: a) If saved as an App I am allowed to paste text into the text field of the script b) If saved as a script I am NOT allowed to paste into the text field. Using the “Simple Sample” script from the Dialog Toolkit as example (as below) I have seen some beachballing on Tahoe when saving as an app, so I was pl...

Late Night Software Ltd.
Where does the SD Notary app look for developer ID?

I am trying the SD Notary 2 app for the first time. It looks great. However, it doesn’t seem to find my developer ID, which blocks the app from doing the good stuff that it does. Any hints?

Late Night Software Ltd.

I alluded to automating my screenshot creation for Octavo's website and App Store page. I finally got round to writing a blog post about how I did it!

https://www.amyworrall.com/blog/automating-mac-app-screenshots

It's a combination of #XCUITest automation, #AppleScript for setting up the Mac, and a bit of scripting to run the tests and post-process the images.

#BuildInPublic #MacDev

Automating Mac app screenshots — Amy Worrall

Amy Worrall