Skip to content

Cyber Security And Bitcoin Blockchain News

The World

  • President Biden Insists US Recession Is Not Inevitable — Treasury Secretary Yellen Concurs – Bitcoin News bitcoin news
  • Russian IoT Botnet Designed to Run Social Media Disinformation Campaigns cyber security news
  • India Leads the World in NFT Gaming, Fewer P2E Players in Western Countries – Metaverse Bitcoin News bitcoin news
  • Crypto-Related Lawsuits Rising in Russia, Criminal Cases Increase by 40% – Bitcoin News bitcoin news
  • Billionaire Investor and Galaxy Digital CEO Mike Novogratz Addresses the Terra LUNA and UST Fallout – Bitcoin News bitcoin news
  • ETH, BTC Remain Lower Ahead of Federal Reserve Rate Decision – Market Updates Bitcoin News bitcoin news
  • Gucci to Accept Crypto Payments in Retail Stores – Featured Bitcoin News bitcoin news
  • Bitcoin Funding Rates Remain Unmoved Despite Plunge To $30,000 bitcoin news

UpdateAgent Returns with New macOS Malware Dropper Written in Swift

Posted on May 17, 2022 By root


A new variant of the macOS malware tracked as UpdateAgent has been spotted in the wild, indicating ongoing attempts on the part of its authors to upgrade its functionalities.

“Perhaps one of the most identifiable features of the malware is that it relies on the AWS infrastructure to host its various payloads and perform its infection status updates to the server,” researchers from Jamf Threat Labs said in a report.

UpdateAgent, first detected in late 2020, has since evolved into a malware dropper, facilitating the distribution of second-stage payloads such as adware while also bypassing macOS Gatekeeper protections.

The newly discovered Swift-based dropper masquerades as Mach-O binaries named “PDFCreator” and “ActiveDirectory” that, upon execution, establish a connection to a remote server and retrieve a bash script to be executed.

CyberSecurity

“The primary difference [between the two executables] is that it reaches out to a different URL from which it should load a bash script,” the researchers noted.

These bash scripts, named “activedirec.sh” or “bash_qolveevgclr.sh“, include a URL pointing to Amazon S3 buckets to download and run a second-stage disk image (DMG) file to the compromised endpoint.

“The continued development of this malware shows that its authors continue to remain active, trying to reach as many users as possible,” the researchers said.





TheHackersNews/

cyber security news

Post navigation

Previous Post: Taki Enters The Indian Market with First of its Kind Engage-to-Earn Crypto Economy
Next Post: India’s Central Bank RBI Warns Crypto Could Lead to Dollarization of Economy – Economics Bitcoin News

Related Posts

  • Thousands of Borrowers’ Data Exposed from ENCollect Debt Collection Service cyber security news
  • Chinese Hackers Caught Stealing Intellectual Property from Multinational Companies cyber security news
  • U.S. FCC Commissioner Asks Apple and Google to Remove TikTok from App Stores cyber security news
  • Microsoft Azure Vulnerability Exposes PostgreSQL Databases to Other Customers cyber security news
  • Europe Agrees to Adopt New NIS2 Directive Aimed at Hardening Cybersecurity cyber security news
  • Over a Million WordPress Sites Forcibly Updated to Patch a Critical Plugin Vulnerability cyber security news

Archives

  • July 2022
  • June 2022
  • May 2022

Categories

  • bitcoin news
  • cyber security news

Recent Posts

  • Russian Media Censor Roskomnadzor Blocks Major Crypto News Website – Bitcoin News
  • Jed McCaleb’s Ripple Stash Down to 81 Million — Co-Founder’s XRP Cache Likely to Dry Up This Year – Altcoins Bitcoin News
  • Exploit Forces Crema Finance to Temporarily Suspend Services, $8.7 Million Stolen – Bitcoin News
  • Blockfi CEO Says FTX Has an ‘Option to Acquire’ Crypto Lender at a Price of up to $240M – Bitcoin News
  • Dogecoin (DOGE) Could Use Some Lift

Recent Comments

No comments to show.
  • Bitcoin Climbs Back Above $20K, A Bit Of A Relief To The Sinking Crypto Market bitcoin news
  • Terra’s Crypto Tokens UST and Luna Classic Mysteriously Pumped This Week, UST Climbed by 470% – Market Updates Bitcoin News bitcoin news
  • ViaBTC is Always on the Way bitcoin news
  • President Biden Insists US Recession Is Not Inevitable — Treasury Secretary Yellen Concurs – Bitcoin News bitcoin news
  • I Can’t See the Point of Crypto — Nobody Needs to Own It – Markets and Prices Bitcoin News bitcoin news
  • Japanese Virtual IP Firm Raises $10 Million to Accelerate Metaverse Business – Metaverse Bitcoin News bitcoin news
  • Mark Zuckerberg Expects Billions of People to Use the Metaverse Generating Massive Revenue for Meta – Metaverse Bitcoin News bitcoin news
  • Pakistan Can Generate $90 Million Annually if It Introduces a 15% Tax on Crypto Transactions – Emerging Markets Bitcoin News bitcoin news

Copyright © 2022 Cyber Security And Bitcoin Blockchain News.

Powered by PressBook News Dark theme