threat-intel
The Xcode Assassin Returns: A Deep Dive Into the Latest XCSSET Version
High
Summary
The XCSSET malware family has returned with version 40, exhibiting enhanced stealth and persistence techniques to evade detection and compromise macOS systems, particularly those of software developers. This latest iteration utilizes a multi-layered encryption scheme, polymorphic payloads, and a new Telegram trojanizer to maintain a persistent presence and expand its data-stealing capabilities. The attackers have significantly refined their tactics, including a dual-key encryption system and advanced evasion techniques, to bypass existing security measures.
Summary written automatically in our own words from the original article, which belongs to its publisher and remains the reference. It may contain errors. Sources & data
