Malware caught using a macOS zero-day to secretly take scree

Malware caught using a macOS zero-day to secretly take screenshots – TechCrunch


Malware caught using a macOS zero-day to secretly take screenshots
Almost exactly a month ago, researchers revealed a notorious malware family was exploiting a never-before-seen vulnerability that let it bypass macOS security defenses and run unimpeded. Now, some of the same researchers say another malware can sneak onto macOS systems, thanks to another vulnerability.
Jamf says it found evidence that the XCSSET malware was exploiting a vulnerability that allowed it access to parts of macOS that require permission — such as accessing the microphone, webcam or recording the screen — without ever getting consent.
XCSSET was first discovered by Trend Micro in 2020 targeting Apple developers, specifically their Xcode projects that they use to code and build apps. By infecting those app development projects, developers unwittingly distribute the malware to their users, in what Trend Micro researchers described as a “supply-chain-like attack.” The malware is under continued development, with more recent variants also targeting Macs running the newer M1 chip.

Related Keywords

Jaron Bradley , Ferdous Saljooki , Stuart Ashenbrenner , Trend Micro , போக்கு மைக்ரோ ,

© 2025 Vimarsana