Advertisement

CrashStealer: New macOS Info Stealer Bypasses Gatekeeper via Notarization
CrashStealer macOS malware leverages C++ and notarized droppers to evade security checks and exfiltrate validated credentials from compromised Apple devices.

Gaslight macOS Malware Uses Prompt Injection to Bypass AI Detection
Gaslight is a newly discovered Rust-based macOS implant that uses prompt injection to deceive AI-driven analysis tools and bypass automated detection.

OpenAI Employee Devices Targeted in TanStack Supply Chain Attack
OpenAI reports compromise of two employee macOS devices via the TanStack supply chain attack. Learn how to detect and mitigate the Mini Shai-Hulud threat.

ClickFix Social Engineering Clusters Target Windows and macOS Systems
Insikt Group identifies five ClickFix clusters using obfuscated commands to exploit native system tools via fake browser error overlays on Windows and macOS.
CrowdStrike Falcon macOS Sensor: Enhanced Network Visibility Analysis
CrowdStrike leverages Apple's Network Extension framework to provide granular telemetry and DNS visibility for EDR on macOS 12 Monterey and later.

UNC4899 Exploits AirDrop for Crypto Firm Breach — Analysis
UNC4899 breached a crypto firm using AirDrop to bypass network security. This analysis explores the TTPs of North Korean threat actors in 2025.