Hackers Target Apple’s Mac Users With New Malware Hidden in Popular Apps

Contact Your Elected Officials

Cybercriminals embedded malicious code and remote-control tools in software used for server management and secure connections.

A new variant of macOS malware known as ZuRu is targeting Apple users by embedding malicious code and a hacking tool into popular utilities used for remote connections and server management, cybersecurity researchers have warned.

First discovered in 2021, ZuRu has evolved over time and can now infect more apps and in new ways, cybersecurity firm SentinelOne said in a July 10 alert. Notably, the latest strain only works on Macs running the Sonoma 14.1 operating system, which Apple launched in October 2023, or Sequoia, its latest operating system.

Earlier versions of ZuRu were found hidden inside both pirated and legitimate copies of popular tools used by developers and IT professionals such as SecureCRT, Navicat, and Microsoft Remote Desktop for Mac. Most recently, the malware was found in a trojanized version of Termius, an app used for managing remote servers and secure network connections.

“This recent sample uses a new method to trojanize legitimate applications,” wrote Phil Stokes and Dinesh Devadoss, cybersecurity researchers at SentinelOne. They noted that the Trojanized version of Termius has had malicious code added to it, along with a helper program called a command-and-control (C2) implant, which allows attackers to remotely control infected Macs.

This particular C2 implant is based on Khepri, an open-source hacking tool designed to let attackers run commands and gather information from a compromised system, the researchers said. Once installed, the implant gives hackers powerful capabilities, including transferring files to or from the victim’s computer, running or controlling programs on the infected Mac, and executing commands and capturing whatever results or data those commands produce.

“The latest variant of macOS.ZuRu continues the threat actor’s pattern of trojanizing legitimate macOS applications used by developers and IT professionals,” the researchers noted. They added that attackers appear to have shifted from earlier, simpler methods to embedding malware in helper applications, likely in an effort to bypass modern security detection measures.

By Tom Ozimek

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Now Lawyers Are Looking for the Epstein List, Too!

So it turns out that when FBI Director Kash...

Remember Epstein’s “Little Black Books”?

Image of Bill Clinton getting a massage from Jeffrey...

On the Major League’s periphery: A major trip through the minors

For Nick Dunn, the trek through the minors is a trifecta of physical, mental, and organizational hurdles filled with politics, roster volatility, and injuries.

Private Citizens are Now Looking into Epstein Client List

Most Americans have never felt so betrayed and confused by a president and his admin as they are by the Trump admin over the Epstein client list issue.

Peace In Ukraine Won’t End The West’s Hybrid War On Russia

The West’s Hybrid War on Russia to follow peace in Ukraine is inevitable due to neoconservatives and liberal-globalists in its decision-making ecosystem.

Fetterman Backs ICE, Calls Abolition Push ‘Outrageous’

Sen. Fetterman voiced support for ICE, calling demands to dismantle the agency “inappropriate and outrageous.”

DOJ Shuts Down Investigation on T-Mobile-UScellular Merger

DOJ no longer opposes the merger of T-Mobile and UScellular and has closed its investigation into the matter, the department said in a July 10 statement.

Trump Visits Central Texas, Epicenter of Catastrophic Flood That Killed More Than 120

President Trump landed in Central Texas for first-hand look at damage from devastating flood claiming the lives of more than 120 people statewide.

IRS Issues Tax Filing Request to Taxpayers Who Filed for Extensions

IRS encouraged taxpayers who requested extensions for their 2024 federal tax returns to file them over the summer, rather than wait for Oct. deadline.

State Department Says Reorganization Plan to Move Ahead Quickly After Supreme Court Ruling

State Dept to reorganize plans following Supreme Court's allowing Trump admin to proceed with layoffs of fed workers and overhaul of federal agencies.

Trump Says US Has Struck Deal With NATO to Supply Weapons to Ukraine

President Donald Trump said on July 10 that he has struck a new deal with NATO under which the United States will supply weapons to Ukraine

RFK Jr. Bans Illegal Immigrants From Government-Funded Programs

HHS Sec. Robert F. Kennedy Jr. is rescinding a 1998 interpretation of a law that allowed illegal immigrants to access certain government-funded programs.

Rubio Set to Visit Malaysia for ASEAN Meetings Amid Tariff Tensions

A delegation including U.S. Sec. of State Marco Rubio will travel to Kuala Lumpur, Malaysia, for series of high-profile meetings between July 11 and 12.
spot_img

Related Articles