news.mlab.sh
Back to the feed
threat-intel

The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version

High
Image: Palo Alto Unit 42
Summary

The XCSSET malware family has returned with version 40, exhibiting enhanced stealth and persistence techniques to evade detection and compromise macOS systems, particularly those of software developers. This latest iteration utilizes a multi-layered encryption scheme, polymorphic payloads, and a new Telegram trojanizer to maintain a persistent presence and expand its data-stealing capabilities. The attackers have significantly refined their tactics, including a dual-key encryption system and advanced evasion techniques, to bypass existing security measures.

Read the full article at Palo Alto Unit 42

Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data

Report an error
Confirmed errors are fixed and listed on /corrections.