Beware: New macOS Malware Posing as Chrome and Zoom Updates Target Job Seekers

North Korean Hackers Target macOS Users with New Malware
Security researchers at SentinelLabs have discovered new variants of the 'FlexibleFerret' malware family, which are being used in a campaign known as 'Contagious Interview.' The attackers pose as recruiters to trick job seekers into installing malicious software. This malware includes components that disguise themselves as legitimate app updates or installers for popular applications like Chrome and Zoom.
Apple has responded by updating its XProtect tool to block several variants of the malware, including FROSTYFERRET_UI, FRIENDLYFERRET_SECD, and MULTI_FROSTYFERRET_CMDCODES. However, some variants remain undetected, indicating the evolving nature of these threats.
The malware primarily spreads through social engineering tactics, such as fake job interviews that lead to seemingly legitimate app downloads. These apps install a persistence agent that runs in the background, stealing sensitive data and communicating with command-and-control servers via Dropbox.
To protect against these threats, Mac users should be cautious when downloading software from untrusted sources and consider using additional security solutions like Malwarebytes, Sophos Home, or CleanMyMac X.
Latest News

xBloom Studio: The Coffee Maker That Puts Science in Your Cup
1 week ago

Matter 1.4.1 Update: Daniel Moneta Discusses Future of Smart Home Interoperability on HomeKit Insider Podcast
2 weeks ago

OWC Unleashes Thunderbolt 5 Docking Station with 11 Ports for M4 MacBook Pro
2 weeks ago

Nomad Unveils Ultra-Slim 100W Power Adapter for On-the-Go Charging
2 weeks ago

iOS 19 Set to Debut Bilingual Arabic Keyboard and Virtual Calligraphy Pen for Apple Pencil
2 weeks ago

Big Tech Lawyers Accused of Encouraging Clients to Break the Law
2 weeks ago