malware
PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence
Medium
Summary
A new version of PamStealer, a macOS malware, has been identified that requires a live connection to a command-and-control server for payload decryption. The latest version also includes a new decoy website and expands the list of targeted browsers, including Arc, Zen, and privacy-focused browsers. The malware employs multiple persistence mechanisms to maintain its presence on the system.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
