Hackers are using legitimate apps like Elmedia Player and Folx for distributing OSX/Proton malware in mac devices.Security researchers at ESET discovered that OSX/Proton malware was spreading through a new supply chain attack by injecting malicious code i
In Capsule:
- Hackers are using legitimate apps for spreading OSX/Proton malware
- Elmedia Player and Folx applications are used for distributing proton malware in Mac devices
- Eset alerted Eltima, and the malware was removed immediately
- A full reinstall of OS is the only method to remove malware if the device is infected.
- /tmp/Updater.app/
- /Library/LaunchAgents/com.Eltima.UpdaterAgent.plist
- /Library/.rand/
- /Library/.rand/updateragent.app/
About the Author
[lgc_column grid="15" tablet_grid="25" mobile_grid="25" last="false"]
[/lgc_column][lgc_column grid="85" tablet_grid="75" mobile_grid="75" last="true" style="background-color: #dcdcdc;"]Ashique is a self motivated and passionate security analyst with a good knowledge in computer networking, security analysis, vulnerability assessment and penetration testing. [/lgc_column]
[/lgc_column][lgc_column grid="85" tablet_grid="75" mobile_grid="75" last="true" style="background-color: #dcdcdc;"]Ashique is a self motivated and passionate security analyst with a good knowledge in computer networking, security analysis, vulnerability assessment and penetration testing. [/lgc_column]