Stuart Ashenbrenner

52 Followers
68 Following
26 Posts
Principal macOS Security Researcher @ Huntress | Creator of Crash Security | 🏀 Skills Coach
GitHubhttps://github.com/stuartjash
macOS Noteshttps://crashsecurity.io
Huntress Write-Upshttps://www.huntress.com/blog/author/stuart-ashenbrenner

Want to hear about a macOS infostealer? Me neither. But…AMOS is now getting delivered via ChatGPT and Grok conversations.

https://www.huntress.com/blog/amos-stealer-chatgpt-grok-ai-trust

AI-Poisoning & AMOS Stealer: How Trust Became the Biggest Mac Threat | Huntress

Attackers are exploiting user trust in AI and aggressive SEO to deliver an evolved Atomic macOS Stealer. Learn why this social engineering tradecraft bypasses traditional network controls and the future of macOS infostealer defense.

Huntress
I have still yet to find anything in this life that is louder than an AirPods case at bedtime with a toddler.

I’ve just started digging into Threat Hunting macOS by Jaron Bradley, and I could instantly tell that it’s an excellent read. 🐛‍🍎

Want to learn the technical details of Mac security and how malware works? Pick up a physical copy through the author’s site, or a digital copy from Apple Books. https://themittenmac.com/threat-hunting-book/

I've hinted at this before, but I've decided: I'm getting out of tech. I've been in tech, and in security, for a long time, but it's no longer what it used to be. So I'm running off into the woods, almost literally, as so many in tech want to do.

I wrote up my perceptions of what has changed in the industry, and how rough the job market is right now. Also wrote up what I plan on doing next. If anyone's interested, have a read.

https://whitehatmac.com/so-long-and-thanks-for-all-the-malware/

So long, and thanks for all the malware – White Hat Mac

Had a fair number of people ask how I build slidedecks in Keynote, so I started a tutorial series, "Keynope to Keydope." The first part is available on the WeTalks page for Objective-See.
https://www.youtube.com/watch?v=8HVJ0kPYEsk
WeTalks - Keynote tutorial (Part 1): “Keynope to Keydope” with Stuart Ashenbrenner

YouTube

My slides from #OBTS (BlueNoroff's Clues w/ @birchb0y) and the @objective_see #WeTalks (Slide Hustle) are now up. They are keynotes, so feel free to download. Additionally, I'm working on my first tutorial on building slides - coming soon. Enjoy!

https://notes.crashsecurity.io/notes/b/77D4564F-2261-4F93-9575-16109CCE988B/Keynotes

Notes

😎 Join us June 11-13, 2025 for our 11th annual MacDevOps:YVR conference. Our 111th podcast just dropped to tell y'all about it. https://mdopod.com/mdoyvr-2025/
MDOYVR 2025 | MacDevOpsYVR

Mat X, Nick and JD turn it up to eleven for MDOYVR 2025. Join us in beautiful Vancouver, British Columbia June 11-13, 2025 for the 11th annual MDOYVR! Call ...

MacDevOpsYVR podcast
Infostealer behavioral detection is hard with common commands, depends a lot on context - Stuart Ashenbrenner/Alden Schmidt at #obts #obtsv7 (exactly the sort of thing I was aiming at with NBD, btw. :) https://github.com/megancarney/nbd)
GitHub - megancarney/nbd

Contribute to megancarney/nbd development by creating an account on GitHub.

GitHub
A few updates pushed to my macOS notes archive, mostly regarding new XProtect happenings in macOS Sequoia.
https://notes.crashsecurity.io/notes
Notes

I'm starting work as an EDR product manager at Huntress next Monday! 🎉🥳🎉