Source |
Checkpoint |
Identifiant |
8635272 |
Date de publication |
2025-01-09 13:00:22 (vue: 2025-01-09 13:08:58) |
Titre |
Cracking the Code: How Banshee Stealer Targets macOS Users |
Texte |
>Executive Summary: Since September, Check Point Research (CPR) has been monitoring a new version of the Banshee macOS Stealer, a malware that steals browser credentials, cryptocurrency wallets, and other sensitive data. Undetected for over two months, Banshee’s latest version introduced string encryption taken from Apple’s XProtect, likely causing antivirus detection systems to overlook the malware Threat actors distributed Banshee using phishing websites and fake GitHub repositories, often impersonating popular software like Chrome and Telegram. A key update in the new version removed a Russian language check, expanding the malware’s potential targets. The Banshee Stealer highlights the growing risks to macOS […]
>Executive Summary: Since September, Check Point Research (CPR) has been monitoring a new version of the Banshee macOS Stealer, a malware that steals browser credentials, cryptocurrency wallets, and other sensitive data. Undetected for over two months, Banshee’s latest version introduced string encryption taken from Apple’s XProtect, likely causing antivirus detection systems to overlook the malware Threat actors distributed Banshee using phishing websites and fake GitHub repositories, often impersonating popular software like Chrome and Telegram. A key update in the new version removed a Russian language check, expanding the malware’s potential targets. The Banshee Stealer highlights the growing risks to macOS […]
|
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
>executive actors antivirus apple’s banshee banshee’s been browser causing check chrome code: cpr cracking credentials cryptocurrency data detection distributed encryption expanding fake from github growing has highlights how impersonating introduced key language latest like likely macos malware malware’s monitoring months new often other over overlook phishing point popular potential removed repositories research risks russian sensitive september since software stealer steals string summary: systems taken targets telegram threat two undetected update users using version wallets websites xprotect |
Tags |
Malware
Threat
|
Stories |
|
Move |
|