New ransomware for MacOS

Malwarebytes News

Share post

MacOS users in their sights: New ransomware attack is targeting MacOS users again for the first time in years. Malwarebytes security researchers discover the world's only fourth ransomware for MacOS.

Malwarebytes' security researchers have discovered a new MacOS ransomware. After KeRanger, Patcher and Mabouia, the ransomware EvilQuest is only the fourth ransomware worldwide that is aimed exclusively at MacOS users. The ransomware differs from previous MacOS ransom threat malware in that EvilQuest not only encrypts the victim's files, but also installs a keylogger as well as a reverse shell.

The Malwarebytes security researchers discovered the dangerous ransomware on torrent portals and online forums, where the MacOS software Little Snitch is offered for download and on which the malware is secretly loaded. Little Snitch is a software that is widely used and popular with Mac users.

Backups as a last resort

To protect against the new ransomware, the security researchers around Thomas Reed, Director of Mac & Mobile at Malwarebytes, recommend, among other things, appropriate backups. As with other ransomware attacks, it is advisable to save two backup copies on different devices or hard drives. Reed also recommends the use of a security product. Malwarebytes for Mac users are protected from the new ransomware.

More on this in the blog of malwarebytes.com

 


Via Malwarebytes

Malwarebytes protects home users and businesses from dangerous threats, ransomware and exploits that are undetected by antivirus programs. Malwarebytes completely replaces other antivirus solutions in order to avert modern cybersecurity threats for private users and companies. More than 60.000 companies and millions of users trust Malwarebyte's innovative machine learning solutions and its security researchers to avert emerging threats and eliminate malware that antiquated security solutions fail to detect. You can find more information at www.malwarebytes.com.


 

Matching articles on the topic

Docker Hub: 3 million infected repositories discovered

Docker Hub has a huge library for developers with millions of container images and repositories. The experts at JFrog ➡ Read more

Cyber ​​insurance: Managers see companies as poorly protected

Cybersecurity and cyber insurance coverage are more important than ever. The third Global Cyber ​​Risk and Insurance Study 2024 from Munich ➡ Read more

500.000 account information from ChatGPT users on the dark web

Kaspersky cybersecurity experts have discovered thousands of stolen credentials for popular AI tools such as ChatGPT, Grammarly and Canva on the dark web. The ➡ Read more

Rankings of the most common malware

Security researchers have discovered a new method for spreading the Remote Access Trojan (RAT) Remcos, which is ranked number one in Germany ➡ Read more

LockBit is back: cyber attack on KJF with 17 clinics and schools 

The KJF - the headquarters of the Catholic Youth Welfare Department of the Diocese of Augsburg e. V. suffered an extensive cyber attack. The hackers around ➡ Read more

280.000 email addresses stolen from Mainz University Medical Center

Several media reports document the recent data theft at the Mainz University Medical Center: 280.000 email addresses were stolen and published on the darknet. The ➡ Read more

Detect string obfuscation from Pikabot

A cybersecurity research team has developed an IDA plugin that can automatically decrypt the string obfuscation of the Pikabot malware loader. Those used by the malware ➡ Read more

FBI: Head of REVIL ransomware gang convicted

The REVIL gang carried out spectacular ransomware attacks and stole $700 million through extortion. The leading man was already caught in 2021, ➡ Read more