Hackers Target Apple’s Mac Users With New Malware Hidden in Popular Apps

Contact Your Elected Officials

Cybercriminals embedded malicious code and remote-control tools in software used for server management and secure connections.

A new variant of macOS malware known as ZuRu is targeting Apple users by embedding malicious code and a hacking tool into popular utilities used for remote connections and server management, cybersecurity researchers have warned.

First discovered in 2021, ZuRu has evolved over time and can now infect more apps and in new ways, cybersecurity firm SentinelOne said in a July 10 alert. Notably, the latest strain only works on Macs running the Sonoma 14.1 operating system, which Apple launched in October 2023, or Sequoia, its latest operating system.

Earlier versions of ZuRu were found hidden inside both pirated and legitimate copies of popular tools used by developers and IT professionals such as SecureCRT, Navicat, and Microsoft Remote Desktop for Mac. Most recently, the malware was found in a trojanized version of Termius, an app used for managing remote servers and secure network connections.

“This recent sample uses a new method to trojanize legitimate applications,” wrote Phil Stokes and Dinesh Devadoss, cybersecurity researchers at SentinelOne. They noted that the Trojanized version of Termius has had malicious code added to it, along with a helper program called a command-and-control (C2) implant, which allows attackers to remotely control infected Macs.

This particular C2 implant is based on Khepri, an open-source hacking tool designed to let attackers run commands and gather information from a compromised system, the researchers said. Once installed, the implant gives hackers powerful capabilities, including transferring files to or from the victim’s computer, running or controlling programs on the infected Mac, and executing commands and capturing whatever results or data those commands produce.

“The latest variant of macOS.ZuRu continues the threat actor’s pattern of trojanizing legitimate macOS applications used by developers and IT professionals,” the researchers noted. They added that attackers appear to have shifted from earlier, simpler methods to embedding malware in helper applications, likely in an effort to bypass modern security detection measures.

By Tom Ozimek

Read Full Article on TheEpochTimes.com

The Epoch Times
The Epoch Timeshttps://www.theepochtimes.com/
Tired of biased news? The Epoch Times is truthful, factual news that other media outlets don't report. No spin. No agenda. Just honest journalism like it used to be.

Fourth and funded: The business of buyouts

Through week ten of the college football season, the ledger on what universities owe their former coaches in buyouts was nearly $185 million. 

Deflating Portland: Why Antifa Went from Black Blok to Inflatable Costumes

Antifa's transformation from militant to mascot is so absurd it's almost comedic. Yet beneath the humor lies something calculated. It’s all about optics.

The Affordable Care Act: The Great Deception of “Affordable”

When the Affordable Care Act was introduced, people trusted what they were told. The truth is, the ACA has done the exact opposite of what it claimed.

Trump’s Tariffs Lead to Jeep Coming Home

Thanks to Trump, Stellantis will produce the Compass and Cherokee vehicles in Belvidere, IL and this decision had nothing to do with Biden or Pritzker.

Trump’s Unyielding Defense of Persecuted Christians in Nigeria Shows Moral Courage 

Trump vows “fast and vicious” action against Islamic terrorists in Nigeria as globalists hesitate to confront atrocities against Christian communities.

Children Face Higher Risk of Neurodevelopmental Disorders If Exposed to COVID-19 in Womb: Study

Children whose mothers contracted COVID-19 while pregnant face an elevated risk of neurodevelopmental disorder, according to a new paper.

Trump Says SNAP Benefits Won’t Be Paid Until Government Reopens

USDA says states must recode systems to reflect reduced SNAP benefits, a process that could take anywhere from a few weeks to several months.

Charles Murray Reflects on Faith, Science, and America’s Cultural Divide

Charles Murray's spiritual awakening reshaped his views on science and society, warning the West’s loss of faith has created a dangerous cultural void.

New York Urges Court to Dismiss Challenge of Content Moderation Rules

X lawsuit argues that New York state content moderation rules would compel disclosure of ‘controversial speech’ protected by the First Amendment.

Trump Re-Nominates Jared Isaacman for NASA Administrator

Trailblazing civilian astronaut Jared Isaacman is once again President Donald Trump’s choice for NASA’s administrator.

US Agencies Terminate 103 Wasteful Contracts With $4.4 Billion Ceiling Value: DOGE

Government agencies canceled 103 wasteful contracts worth $4.4 billion, saving $103 million in five days, according to the Department of Government Efficiency.

Food Stamp Payments Could Restart by Wednesday as Ordered by Judge: Bessent

The Trump administration awaits court decisions on funding food stamp benefits for low-income Americans amid the ongoing government shutdown.

Trump Threatens Nigeria With US Military Action If It Doesn’t Confront Killings of Christians

President Trump on Nov. 1 threatened military action in Nigeria if the West African country doesn’t do more to halt the killing of Christians.
spot_img

Related Articles