Security Bite North Korean hackers impersonate job recruiters to target Mac users with updated BeaverTail malware

Image for article Security Bite North Korean hackers impersonate job recruiters to target Mac users with updated BeaverTail malware
News Source : 9to5Mac

News Summary

  • While BeaverTail was an existing JavaScript info stealer discovered in 2023, it now appears to have been reworked to target Mac users with a malicious disk image titled “MicroTalk.dmg.”Security researcher and author Patrick Wardle analyzed the malware in a fairly comprehensive and hilariously titled blog post on Objective-See.
  • It was also found to quietly install the remote desktop application AnyDesk and keylogging software in the background to take over machines and collect keystrokes.The malware, a new variant of a known strain dubbed “BeaverTail,” was first reported by MalwareHunterTeam via a post on X.
  • If it looks like a duck, swims like a duck, and quacks like a duck, then it probably is a duck.FTC: We use income earning auto affiliate links.
  • Every week,Arin Waichulis delivers insights on data privacy, uncovers vulnerabilities, and sheds light on emerging threats within Apple’s vast ecosystem of over 2 billion active devices.This wouldn’t be the first report of North Korean hackers posed as job recruiters to target victims.
  • Once infected, the malware would establish a connection between the Mac and the attacker’s command and control (C2) server to exfiltrate sensitive data like iCloud Keychain credentials.
  • Request your EXTENDED TRIAL today and understand why Mosyle is everything you need to work with Apple.Security researchers have identified an attempt by state-sponsored hackers from North Korea (DPRK) to target Mac users with infostealer malware through a trojanized meeting app.
9to5Mac Security Bite is exclusively brought to you by Mosyle,the only Apple Unified Platform.Making Apple devices workready and enterprisesafe is all we do. Our unique integrated approach to mana [+4904 chars]

Must read Articles