A critical macOS vulnerability that enables attackers to steal sensitive private data normally protected by Apple's Transparency, Consent, and Control (TCC) framework.
The vulnerability, dubbed "Sploitlight," exploits Spotlight plugins to access protected files including those in the Downloads folder and Apple Intelligence caches containing...
A critical vulnerability in macOS that allows attackers to escalate privileges and gain root access through a vulnerability in the system's service management mechanism.
The exploit, dubbed "Daemon Ex Plist," targets Apple's launch daemon configuration files and has been found to affect numerous popular...
Security researchers have identified a new variant of the macOS.ZuRu malware that specifically targets developers and IT professionals through a trojanized version of the popular SSH client Termius.
This latest evolution of the malware, which first emerged in July 2021, demonstrates increasingly sophisticated techniques...
In a significant escalation of macOS cybersecurity threats, the notorious Atomic macOS Stealer (AMOS) has received a dangerous upgrade. For the first time, it is being deployed with an embedded backdoor.
Moonlock, the cybersecurity division of MacPaw, warns that this is the most sophisticated...
A critical vulnerabilities in macOS SMBClient that could allow remote attackers to execute arbitrary code and crash systems through kernel-level exploits.
The vulnerabilities affect the SMB filesystem client used by macOS to mount remote file shares, representing a significant security risk for Mac users...
A sophisticated North Korean-aligned cybercrime operation, known as Famous Chollima, is currently targeting professionals in the cryptocurrency and blockchain sectors, primarily in India, by deploying both Windows and macOS versions of a remote access trojan (RAT) previously labeled GolangGhost.
Security researchers at Cisco Talos...