Skip to content

Cybersecurity News Everyday

Stay Ahead of Cyber Threats – Daily Security Insights, Powered by AI

    • Cyber Attack & Data Breach
    • Daily Recap
    • Disclaimer
    • Hacked: Web Defacement
    • My Bookmarks
    • Security Report
    • User Bookmark Dashboard
    • Web Statistics
    • YouTube Overview
    • Welcome!
    • Threat Research
    • Security News
    • Ransom Monitor
    • Interesting Stuff

Tag: MACOS

Cyber Security News

Sliver and Ligolo-ng Attack Leverages Y Combinator Brand

November 16, 2024September 23, 2025 Cyware

Summary: Security researchers from Hunt.io have identified a cyber operation utilizing the Sliver command-and-control framework and Ligolo-ng tunneling tool, targeting victims by impersonating Y Combinator. The operation highlights the evolving tactics of cybercriminals leveraging trusted brands to…

Read More
Cyber Security News

Lazarus Group’s New RustyAttr Trojan for macOS Evades Antivirus with Ease

November 15, 2024September 23, 2025 Cyware

Summary: Researchers at Group-IB have uncovered a new stealth technique used by the North Korean APT group Lazarus, which targets macOS systems through a code-smuggling method that utilizes custom extended attributes to evade antivirus detection. This method involves the deployment of a Trojan named…

Read More
Cyber Security News

Zoom Addressed Two High-Severity Issues in Its Platform

November 14, 2024September 23, 2025 Cyware

Summary: Zoom has addressed six vulnerabilities in its video conferencing platform, including two high-severity issues that could allow remote attackers to escalate privileges or leak sensitive information. The vulnerabilities affect various Zoom applications and require updates to mitigate risks. T…

Read More
Cyber Security News

New Exploit Method Targets Google Chrome Without Needing Zero-Days

November 13, 2024September 23, 2025 Cyware

Summary: Security researcher Ron Masas from Imperva Threat Research has revealed a new method for attackers to exploit Chrome users via the File System Access API, which can bypass security mechanisms on both Windows and macOS. This exploit can lead to severe security vulnerabilities, particularly f…

Read More
Cyber Security News

North Korean Hackers Create Flutter Apps to Bypass macOS Security

November 13, 2024September 23, 2025 Cyware

Summary: North Korean threat actors are targeting macOS systems with trojanized applications disguised as Notepad and Minesweeper games, leveraging a legitimate Apple developer ID to bypass security checks. The campaign appears to be an experimental effort to test methods for evading macOS security…

Read More
Threat Research

Jamf Threat Labs Uncovers New Threat Aimed at macOS

November 13, 2024October 15, 2025 Securonix

Jamf Threat Labs has identified malware samples linked to North Korea, utilizing Flutter for obfuscation. The malware, discovered in late October, includes applications that were signed and temporarily passed Apple’s notarization. The analysis reveals complex …

Read More
Threat Research

North Korean APT BlueNoroff Targets Macs with Fake Crypto News and Novel Persistence

November 9, 2024October 14, 2025 Cyware

SentinelLabs describes the “Hidden Risk” campaign, a suspected BlueNoroff (DPRK) operation that uses phishing emails and a fake PDF lure to distribute multi-stage macOS malware. The attack installs a backdoor named “growth” and achieves stealthy persistence by…

Read More
Uncovering Apple Vulnerabilities: The diskarbitrationd and storagekitd Audit Story Part 1
Threat Research

Uncovering Apple Vulnerabilities: The diskarbitrationd and storagekitd Audit Story Part 1

November 8, 2024October 20, 2025 Kandji.io

This article discusses vulnerabilities in the macOS system daemons diskarbitrationd and storagekitd, specifically CVE-2024-44175, which allows attackers to bypass security measures. The findings, revealed by the Kandji team’s Threat Research group, focus on ho…

Read More
Threat Research

Ethereum Smart Contracts Exploited in Supply Chain Attack to Distribute Multi-Platform Malware

November 6, 2024October 13, 2025 Securonix

Researchers uncovered a malicious npm package, “jest-fet-mock,” that uses Ethereum smart contracts as a decentralized command-and-control mechanism to distribute multi-platform malware via typosquatting. The package executes during npm installation, targets de…

Read More
Threat Research

ClickFix Strategy: The Power of Detection

November 6, 2024October 15, 2025 SekoiaIO

ClickFix is a social-engineering tactic that lures users with fake web pages (e.g., Google Meet or fake CAPTCHAs) to copy and execute PowerShell or mshta commands that download and run payloads like Amos Stealer on Windows and macOS. Observed since May 2024 an…

Read More
Cyber Security News

Critical Flaws in Ollama AI Framework Could Enable DoS, Model Theft, and Poisoning

November 5, 2024September 23, 2025 Cyware

Summary: Cybersecurity researchers have identified six vulnerabilities in the Ollama AI framework that could be exploited for various malicious activities, including denial-of-service attacks, model poisoning, and model theft. These vulnerabilities pose significant risks, particularly as many instan…

Read More
Threat Research

“North Korean Remote Workers: Bridging Pyongyang and Western Payrolls”

November 5, 2024October 14, 2025 ZScaler

North Korean actors used the Contagious Interview and WageMole campaigns to obtain remote jobs and steal sensitive data from developers by delivering obfuscated JavaScript and Python payloads. Their toolset (BeaverTail and InvisibleFerret) now supports Windows…

Read More
Cyber Security News

New LightSpy Spyware Version Targets iPhones with Increased Surveillance Tactics

November 4, 2024September 23, 2025 Cyware

Summary: Researchers have uncovered an advanced version of the LightSpy spyware targeting Apple iOS, which not only enhances its data-capturing capabilities but also introduces destructive features that can render devices inoperable. This modular implant exploits known vulnerabilities in iOS and mac…

Read More
Threat Research

Massive npm Malware Campaign Leverages Ethereum Smart Contracts To Evade Detection and Maintain Control

November 1, 2024October 20, 2025 SocketDev

Summary: The Socket research team has uncovered a sophisticated malware campaign utilizing Ethereum smart contracts for command and control, marking a significant evolution in supply chain attacks targeting the npm ecosystem. This innovative approach makes tra…

Read More
Threat Research

Threat Actor Exposes Playbook for Exploiting npm to Build Blockchain-Powered Botnets

November 1, 2024October 19, 2025 SocketDev

Summary: In October 2024, a significant npm malware campaign was uncovered, utilizing Ethereum smart contracts for decentralized control and evading detection. The threat actor, known as “_lain,” orchestrated a botnet named “MisakaNetwork,” exploiting typosqua…

Read More

Posts pagination

Previous 1 … 54 55 56 … 71 Next

What are you looking for ?

  • 🖥️ [ D A S H B O A R D ]
  • 🕵️‍♂️ Threat Research
  • 📰 Security News
  • 🚨 Attack & Data Breach
  • 🛑 Ransomware Monitor
  • 💀 Hacked! Web Defacement
  • ✨ Interesting Stuff
  • 📺 Youtube Overview
  • 🔍 Google Cybersecurity
  • 📢 Telegram Notification
  • 📰 News Daily Recap
  • 📰 Security Report
  • X / T W I T T E R
  • B L U E S K Y
  • L I N K E D . I N
  • T H R E A D S
  • T E L E G R A M
  • F A C E B O O K

Website Disclaimer

Proudly powered by WordPress | Theme: Fairy Dark by Candid Themes.