Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
jtig@infosec.exchangeJ

jtig@infosec.exchange

@jtig@infosec.exchange
About
Indlæg
1
Emner
1
Fremhævelser
0
Grupper
0
Følgere
0
Følger
0

Vis Original

Indlæg

Seneste Bedste Controversial

  • Nice, I've found an infostealer in the wild!
    jtig@infosec.exchangeJ jtig@infosec.exchange

    Nice, I've found an infostealer in the wild!

    This repo just has some info and a download button for a paid macOS app.

    It links to hxxps://za-loop-osx-software[.]github[.]io/.github/RoyalTSX, which redirects you to hxxps://github[.]topic-developer[.]com/packages.html, which tells you to run a curl command and pipe it into bash, encoded in a base64 string.

    The curl command grabs a file from 217[.]119[.]139[.]117, which looks like an infostealer and some other malware written in AppleScript.

    Have fun SOC people.

    #threatintel #macos #cybersecurity

    Ikke-kategoriseret threatintel macos cybersecurity
  • Log ind

  • Har du ikke en konto? Tilmeld

  • Login or register to search.
Powered by NodeBB Contributors
Graciously hosted by data.coop
  • First post
    Last post
0
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper