• Menu
  • Skip to main content
  • Skip to primary sidebar

The Cyber Security News

Latest Cyber Security News

Header Right

  • Latest News
  • Vulnerabilities
  • Cloud Services
alert: new stealthy "rustdoor" backdoor targeting apple macos devices

Alert: New Stealthy “RustDoor” Backdoor Targeting Apple macOS Devices

You are here: Home / General Cyber Security News / Alert: New Stealthy “RustDoor” Backdoor Targeting Apple macOS Devices
February 10, 2024

Apple macOS consumers are the target of a new Rust-dependent backdoor that has been working beneath the radar considering the fact that November 2023.

The backdoor, codenamed RustDoor by Bitdefender, has been located to impersonate an update for Microsoft Visual Studio and focus on the two Intel and Arm architectures.

The correct first access pathway made use of to propagate the implant is at this time not acknowledged, despite the fact that it can be mentioned to be dispersed as Unwanted fat binaries that contain Mach-O information.

✔ Approved Seller From Our Partners
Mullvad VPN Discount

Protect your privacy by Mullvad VPN. Mullvad VPN is one of the famous brands in the security and privacy world. With Mullvad VPN you will not even be asked for your email address. No log policy, no data from you will be saved. Get your license key now from the official distributor of Mullvad with discount: SerialCart® (Limited Offer).

➤ Get Mullvad VPN with 12% Discount


Numerous variants of the malware with minimal modifications have been detected to date, very likely indicating energetic improvement. The earliest sample of RustDoor dates back to November 2, 2023.

It will come with a large array of commands that enable it to assemble and upload information, and harvest information about the compromised endpoint.

Cybersecurity

Some variations also consist of configurations with details about what knowledge to gather, the checklist of focused extensions and directories, and the directories to exclude.

The captured info is then exfiltrated to a command-and-command (C2) server.

The Romanian cybersecurity organization said the malware is very likely linked to popular ransomware families like Black Basta and BlackCat owing to overlaps in C2 infrastructure.

“ALPHV/BlackCat is a ransomware household (also prepared in Rust), that 1st designed its appearance in November 2021, and that has pioneered the general public leaks business enterprise model,” security researcher Andrei Lapusneau claimed.

In December 2023, the U.S. governing administration announced that it took down the BlackCat ransomware procedure and released a decryption tool that more than 500 afflicted victims can use to regain entry to documents locked by the malware.

Discovered this post attention-grabbing? Adhere to us on Twitter  and LinkedIn to study additional exclusive material we submit.


Some sections of this post are sourced from:
thehackernews.com

Previous Post: «raspberry robin malware upgrades with discord spread and new exploits Raspberry Robin Malware Upgrades with Discord Spread and New Exploits
Next Post: U.S. DoJ Dismantles Warzone RAT Infrastructure, Arrests Key Operators u.s. doj dismantles warzone rat infrastructure, arrests key operators»

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Primary Sidebar

Report This Article

Recent Posts

  • OpenAI Unveils Aardvark: GPT-5 Agent That Finds and Fixes Code Flaws Automatically
  • Nation-State Hackers Deploy New Airstalk Malware in Suspected Supply Chain Attack
  • China-Linked Hackers Exploit Windows Shortcut Flaw to Target European Diplomats
  • China-Linked Tick Group Exploits Lanscope Zero-Day to Hijack Corporate Systems
  • The MSP Cybersecurity Readiness Guide: Turning Security into Growth
  • CISA and NSA Issue Urgent Guidance to Secure WSUS and Microsoft Exchange Servers
  • Eclipse Foundation Revokes Leaked Open VSX Tokens Following Wiz Discovery
  • CISA Flags VMware Zero-Day Exploited by China-Linked Hackers in Active Attacks
  • A New Security Layer for macOS Takes Aim at Admin Errors Before Hackers Do
  • Google’s Built-In AI Defenses on Android Now Block 10 Billion Scam Messages a Month

Copyright © TheCyberSecurity.News, All Rights Reserved.