When macOS gets frostbite. [Research Saturday]

When macOS gets frostbite. [Research Saturday]

0 Anmeldelser
0
Episode
3495 of 3501
Længde
24M
Sprog
Engelsk
Format
Kategori
Fakta

Jaron Bradley, Director of Jamf Threat Labs, is sharing their work on "ChillyHell: A Deep Dive into a Modular macOS Backdoor." Jamf Threat Labs uncovers a newly notarized macOS backdoor called ChillyHell, tied to past UNC4487 activity and disguised as a legitimate applet.

The malware showcases robust host profiling, multiple persistence mechanisms, timestomping, and flexible C2 communications over both DNS and HTTP. Its modular design includes reverse shells, payload delivery, self-updates, and a brute-force component targeting user credentials.

The research can be found here:

⁠ChillyHell: A Deep Dive into a Modular macOS Backdoor

Learn more about your ad choices. Visit megaphone.fm/adchoices


Lyt når som helst, hvor som helst

Nyd den ubegrænsede adgang til tusindvis af spændende e- og lydbøger - helt gratis

  • Lyt og læs så meget du har lyst til
  • Opdag et kæmpe bibliotek fyldt med fortællinger
  • Eksklusive titler + Mofibo Originals
  • Opsig når som helst
Prøv nu
DK - Details page - Device banner - 894x1036
Cover for When macOS gets frostbite. [Research Saturday]

Other podcasts you might like ...