Microsoft Threat Intelligence has identified a significant vulnerability in macOS that could allow attackers to bypass Apple’s System Integrity Protection (SIP), a critical security mechanism designed to safeguard the operating system from malicious interference.
This flaw addressed as CVE-2024-44243,...
Researchers analyzed new versions of the Banshee macOS Stealer sample that initially evaded detection by most antivirus engines, as analysis revealed that the malware employed a unique string encryption technique.
The encryption method was identical to that used by Apple's...
A sophisticated new ransomware family, dubbed NotLockBit, is creating waves in the cybersecurity world with its advanced capabilities and cross-platform functionality. Mimicking the techniques of the infamous LockBit ransomware, NotLockBit has proven to be a formidable new threat, targeting...
A security researcher uncovered a critical macOS vulnerability involving privilege escalation in Apple's MallocStackLogging framework, which had gone undetected for nearly 20 years. The bug, tracked as CVE-2023-32428, was discovered in March 2023 and subsequently patched by Apple in...
A critical vulnerability in macOS WorkflowKit, the framework underpinning Apple's Shortcuts app, has been disclosed.
This vulnerability allows malicious applications to intercept and modify user-imported shortcuts.
Identified as CVE-2024-27821, this race condition in WorkflowKit poses a serious security risk, potentially...
Researchers discovered a novel approach employed by the threat actor to conceal codes using Extended Attributes to avoid detection in macOS devices.
Extended attributes are metadata that can be linked to different file systems' files and directories. They let users...
North Korean threat actors, likely associated with BlueNoroff, have launched multi-stage malware attacks targeting cryptocurrency businesses, expanding their toolkit to include RustDoor/ThiefBucket and RustBucket campaigns.
Hidden Risk, a DPRK-linked threat actor, employed a novel persistence technique involving Zsh configuration file...
A remote access trojan (RAT), HZ RAT, that has been attacking Windows-based devices since at least 2020, was recently upgraded and changed to target Mac users as well.
Typically, a RAT is a type of malware that an attacker employs...
Apple has released iOS 18, addressing a total of 32 security vulnerabilities across various components of its operating system.
This comprehensive update is available for iPhone XS and later models, as well as iPad Pro 13-inch, iPad Pro 12.9-inch 3rd...
Hackers target macOS as its growing user base makes it an increasingly attractive target.
Despite its reputation for strong security, macOS vulnerabilities exist, and exploiting them can give hackers access to valuable data or control over devices, particularly in environments...