Thread Rating:
  • 0 Vote(s) - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Share Post: Reddit Facebook
Mac malware spreads through Xcode projects
#1
https://www.cybersafe.news/mac-malware-s...-projects/        Mac malware spreads through Xcode projects
The XCSSET suite of malware abuses WebKit, Data Vault vulnerabilities.
Priyanka RBy PRIYANKA R 8 hours ago        The Xcode projects are exploited to spread a Mac malware that can compromise Safari and other browsers.

The XCSSET malware family has been found in Xcode projects, leading to a rabbit hole of malicious payloads.

According to the security researchers at Trend Micro, an unusual infection in a developer’s project also included the discovery of two zero-day vulnerabilities.

Xcode is a free integrated development environment (IDE) used in macOS for developing Apple-related software and apps.

Even though it is not clear how the XCSSET finds its way into Xcode projects, once embedded, the malware runs when a project is built.

It is presumed that these systems would be primarily used by developers. These Xcode projects have been modified such that upon building, these projects would run a malicious code. This eventually leads to the main XCSSET malware being dropped and run on the affected system.

Several impacted developers have shared their projects on GitHub, which could result in “supply chain-like attacks for users who rely on these repositories as dependencies in their own projects.”

After getting into a vulnerable system, XCSSET grips on browsers including the development version of Safari, using vulnerabilities to steal user data.
Reply


Possibly Related Threads…
Thread Author Replies Views Last Post
  Ryuk ransomware now self-spreads to other Windows LAN devices mrtrout 0 849 02-26-2021 , 09:40 PM
Last Post: mrtrout
  Wroba Mobile Banking Trojan Spreads to the U.S. via Texts mrtrout 0 903 10-31-2020 , 09:51 AM
Last Post: mrtrout
  Sodinokibi Ransomware Spreads via Fake Forums on Hacked Sites Mohammad.Poorya 0 1,514 09-02-2019 , 07:54 PM
Last Post: Mohammad.Poorya
  Rietspoof malware spreads via Facebook Messenger and Skype spam Mohammad.Poorya 0 1,602 02-19-2019 , 01:44 PM
Last Post: Mohammad.Poorya
  Fileless Backdoored Trojan Spreads Using Worm Living in Removable Drives mrtrout 1 1,693 11-28-2018 , 10:23 AM
Last Post: tarekma7

Forum Jump:


Users browsing this thread: 1 Guest(s)