Tag

Macstealer

All articles tagged with #macstealer

cybersecurity2 years ago

MacStealer Malware Steals Passwords and Credit Card Data on macOS

Security researchers have discovered a new piece of Mac malware called MacStealer that can extract iCloud passwords, files, and credit card details stored in browsers. The malware can extract data from Firefox, Google Chrome, and Microsoft Brave browsers, and can extract several different file types, including .txt, .doc, .jpg, and .zip. MacStealer's makers are working on the ability to harvest Safari passwords and cookies, as well as data in the Notes app. However, the risk to tech-savvy users is very low, as the malware is not digitally signed and requires manual installation and access to System Settings.

cybersecurity2 years ago

MacStealer Malware Steals Apple User Data and Passwords

MacStealer malware can attack Macs running macOS Catalina or later, with either Intel or Apple M-series chips. It can get passwords, cookies, and credit card data from Firefox, Google Chrome, and Microsoft Brave browsers, and extract several different file types, including .txt, .doc, .jpg, and .zip, and it can extract the KeyChain database. MacStealer appears to propagate through a “weed.dmg” executable file. It’s unclear if MacStealer has been logged in the CVE.report database that tracks vulnerabilities and exposures, and Apple has not commented on the malware.

cybersecurity2 years ago

Beware of New MacStealer Malware Stealing iCloud Passwords.

A new malware named MacStealer is targeting Mac users, stealing their credentials stored in the iCloud KeyChain and web browsers, cryptocurrency wallets, and potentially sensitive files. The malware is being distributed as a malware-as-a-service (MaaS), where the developer sells premade builds for $100, allowing purchasers to spread the malware in their campaigns. MacStealer can run on macOS Catalina (10.15) and up to the latest version of Apple's OS, Ventura (13.2). The threat actor uses the lack of a builder and panel to justify the low price of $100 for the malware but promises that more advanced features will arrive soon.

data-safety-endpoint-security2 years ago

MacStealer Malware Steals iCloud Keychain Data and Passwords

MacStealer is a new information-stealing malware that primarily affects macOS devices running Catalina and later on M1 and M2 CPUs. It uses Telegram as a command-and-control platform to exfiltrate data and can steal iCloud Keychain data, passwords, and credit card information from browsers like Google Chrome, Mozilla Firefox, and Brave. The malware is propagated as a DMG file and is still a work in progress, with the malware authors planning to add features to capture data from Apple's Safari browser and the Notes app. To mitigate such threats, it's recommended that users keep their operating system and security software up to date and avoid downloading files or clicking links from unknown sources.