Automatically translated.View original post

MacSync malware breaks through the macOS Gatekeeper protection system.

MacSync malware can easily break through macOS's Gatekeeper protection system.

MacOS was once known for its malware-free, high system strength, but today this belief may have to be questioned, as a variety of malware has begun to attack the system, some of them smart to break through the security systems of the strong operating system.

According to a report by the website Webpronews, malware has been detected that attacks a group of users of the new macOS operating system called MacSync Stealer. The malware is an Infostealer or malware that aims to steal the victim's data, which is aimed at stealing sensitive information such as passwords saved on web browsers, encryption codes, and personal information. There is also something that makes this malware even more special: the ability to easily evade Apple's cyber protection tools like Gatekeeper. The need to work through the Terminal tool allows the malware to access the system and then secretly work so quietly that the victim is unaware.

The MacSync malware spread campaign, hackers insert malware into applications written on the Swift language in the form of dripper, often disguising popular applications such as PDF Viewer. The file is accompanied by a pseudo-PDF decoy to distract the victim. In addition, a genuine Apple Developer ID or Apple Developer ID is used on this application file, allowing the Gatekeeper to understand that the application is genuine, harmless, and that by disguising it is a genuine application, the malware will be able to evade detection. Other protection tools like XProtect or Malware Removal Tool go at the same time because the system believes that the application using the genuine ID is harmless (Apple later removed the Apple Developer ID associated with this malware).

After running the file, the malware will first check the network (Network) that the malware is running under simulated conditions (Sandbox). If it is found to be running in normal conditions, it will start running the script to contact the C2 or Command and Control server to download the real malware (Payload). The real malware, in addition to the above-mentioned capabilities, has the ability to open the back door of the system to communicate with the C2 server and secretly send the stolen data back to the server (Exfiltration). In addition to that, MacSync malware is used. Built to run in module form (Module), the malware can download add-on modules to add new capabilities to the malware by avoiding the built-in detection system at the same time.

Apple, after learning of the existence of the malware, reviewed and immediately canceled the Apple Developer ID associated with the malware, and updated the unique characteristics of the malware (Signature) to XProtect to help detect the malware.

# Trending # lemon 8 diary # Lemon 8 Howtoo # macos # freedomhack

1/19 Edited to

... Read moreในประสบการณ์ส่วนตัวกับการใช้ MacBook Pro มานาน ผมเคยคิดเสมอว่า macOS เป็นระบบที่ปลอดภัยสูงและแทบไม่มีมัลแวร์ แต่หลังจากได้อ่านข่าวเกี่ยวกับมัลแวร์ MacSync ที่สามารถหลบหลีกระบบ Gatekeeper ได้ ทำให้ผมรู้สึกไม่มั่นใจเหมือนเดิม เพราะมัลแวร์นี้สร้างขึ้นมาเฉพาะสำหรับฝ่าด่านความปลอดภัยที่ถือว่ายากลำบากของ Apple MacSync แฝงตัวมาในรูปแบบของแอปพลิเคชันที่ดูเหมือนของแท้ เช่น PDF Viewer ที่มีไฟล์หลอก (PDF Decoy) เพื่อเบี่ยงเบนความสนใจ เห็นได้ชัดว่าผู้ไม่หวังดีมีความชำนาญสูงและรู้วิธีใช้ Apple Developer ID แท้ๆ เพื่อให้ระบบ Gatekeeper มั่นใจว่าไม่มีอันตราย ซึ่งจริง ๆ แล้วเป็นกับดักแบบเนียนๆ สิ่งที่น่ากลัวคือ, มัลแวร์นี้ไม่ต้องเปิดผ่าน Terminal และยังตรวจสอบว่าถูกเรียกใช้ในสภาวะแวดล้อมจริงหรือ Sandbox ก่อนที่จะเริ่มทำงาน และยังสามารถดาวน์โหลดโมดูลเสริมเพื่อเพิ่มความสามารถด้านการถูกตรวจจับได้อย่างแนบเนียน นั่นหมายความว่าถึงแม้ระบบจะติดตามพฤติกรรมบางอย่าง, มัลแวร์ก็ยังสามารถหลบหนีได้เสมอ จากสิ่งที่ได้เรียนรู้ ทำให้ผมตั้งใจมากขึ้นในการติดตั้งซอฟต์แวร์ใหม่ ๆ บน Mac ว่าจะต้องดาวน์โหลดจากแหล่งที่น่าเชื่อถือเท่านั้น นอกจากนี้ยังแนะนำให้ผู้ใช้งาน macOS ทุกคนหมั่นอัปเดตระบบปฏิบัติการและโปรแกรมป้องกันไวรัสอย่างสม่ำเสมอ รวมถึงเปิดใช้งานฟีเจอร์ความปลอดภัยที่ Apple แนะนำอย่าง Gatekeeper และ XProtect เพื่อให้ระบบสามารถตรวจจับมัลแวร์รุ่นใหม่ได้ทัน สุดท้ายนี้ การรู้ทันเทคนิคหลอกลวงของแฮกเกอร์และมัลแวร์ที่พัฒนาขึ้นเรื่อยๆ เป็นสิ่งสำคัญมากสำหรับผู้ใช้ทั่วไป เพราะแม้ระบบจะแข็งแกร่งแค่ไหน แต่ความรู้และความระมัดระวังก็ช่วยลดความเสี่ยงภัยไซเบอร์ได้มากทีเดียว

Related posts

Why I switched to taking notes on my iPad
I used to love writing in notebooks, but after switching to my iPad, I can confidently say I’m never going back! Here’s why: ✨ Cuter Notes – Let’s be real…aesthetic notes make studying more enjoyable! I can use custom colors, cute stickers, and different handwriting styles to make my notes visua
Rebecca R.

Rebecca R.

262 likes

It's no secret that Karol G just slayed the #Grammys #Glambot . #AwardsSeason
user6854050772614

user6854050772614

7 likes

A young woman with long dark hair, wearing a pink satin shirt, smiles at the camera while sitting at a table. Overlay text reads: 'Tools and sites I use as a cybersecurity student to progress my skills and keep me interested in studying'.
A screenshot of 'The Hacker News' website, displaying various cybersecurity news articles from January 2025, including topics like vulnerabilities, malware, cyber espionage, and AI jailbreak methods. An ad for Zscaler and a banner for CIS Hardened Images are also visible.
A screenshot of the O'Reilly learning platform, showing various books and expert playlists related to AI, engineering, and data. Overlay text highlights the subscription cost ($50/month or $499/year) and its value for accessing books and live events.
Tools and sites I use as a cybersecurity student 🌸
#cybersecuritystudent #cybersecurity #techgirlie
LexiStudies

LexiStudies

103 likes

3 cybersecurity jobs that pay well
1. Security Analyst - What They Do: Monitor networks for vulnerabilities, investigate breaches, and implement security measures. - How to Start: - Obtain certifications like CompTIA Security+ or CySA+. - Gain experience with tools like SIEM (e.g., Splunk). - Start in an I
vedha | career tips (tech) 👩‍

vedha | career tips (tech) 👩‍

629 likes

Developing a career in cybersecurity
Hey All! 👋 Want to stay safe online and protect your data? Cybersecurity knowledge is essential. It helps you secure your personal information and understand how to safeguard your digital footprint. Let’s dive into why it’s crucial! 💻🔒 Why Cybersecurity Matters Cybersecurity is about protecting
Meghana

Meghana

547 likes

A MacBook on a desk displays various app windows, including 'Convert Files' and 'Plan projects,' with a large monitor in the background. A prominent text overlay reads 'THE EASIEST WAY TO GET PREMIUM APPS!', illustrating the use of premium applications on a Mac.
A screenshot of the Setapp application interface, showcasing numerous premium Mac and iOS apps like FreeYourMusic, Bartender, and Ulysses. The text highlights 'Get apps, one search away' and 'Enjoy access to over 100 premium apps for one monthly fee.'
Multiple app interfaces are shown, including a 'Keep your Mac clean' utility, a code editor with a Python script, and a 'Stay focused' timer app. These images demonstrate tools for Mac optimization, coding, and productivity, accessible from the menu bar.
The Easiest Way to Get Mac Premium Apps!
Why Setapp is Essential: One Subscription, Numerous Apps: Gain access to over 240 premium applications for a single monthly fee,no need for multiple subscriptions.  Effortless Search & Download: Quickly discover the ideal productivity tool with an easy search, and download it right away. Enh
Reverelia

Reverelia

19 likes

⚡ How to Make Your PC Run Faster – 5 Easy Tips! 🖥️🔥
💡 1. Disable Startup Programs 🚀 Too many apps launching at startup slow down your PC! ✅ Open Task Manager (Ctrl + Shift + Esc) ✅ Go to the Startup tab ✅ Disable unnecessary apps to speed up boot time 💡 2. Clean Temporary Files 🗑️ Over time, junk files slow your system down. ✅ Press Win
skaeszun

skaeszun

284 likes

A Ben 10 gym audio for you. #fyp #gym #ben10 #ben10omniverse #audio
IzzyywiththeZ

IzzyywiththeZ

0 likes

Top Cybersecurity Certificates
There are several reputable cybersecurity certifications that can help you advance your skills and knowledge in the field of cybersecurity. 1. Certified Information Systems Security Professional (CISSP): - CISSP is a globally recognized certification that covers a wide range of cybersecurit
anjali.gama

anjali.gama

110 likes

A person points at a computer screen displaying various app icons and text like "Customize your AI chats with this tool TypingMind" and "The best of Setapp". Overlays read "Tech tips", "Netflix of Productivity", and "Mac Edition!".
Against a lake background, two app icons are shown: CleanMyMac and Paste. Text describes CleanMyMac for tidying Macs and Paste as a clipboard for saving copied content.
Against a lake background, two app icons are shown: TextSniper and Ulysses. Text describes TextSniper for extracting text from visuals and Ulysses for writing and publishing.
Mac Productivity Apps: Make More Time for YOU! 💻
Let’s talk about one of the most important things in our daily routines—our workflow. Whether you’re working for yourself, managing a side hustle, or simply trying to keep everything in check, examining and refining your workflow is key to getting more done with less stress. 💪 By finding simple, ef
Cas Lin

Cas Lin

35 likes

What is CPTSD? Explained by a battle unicorn 🦄 #cptsd #battleunicorn #bethechange #mommyoftherepublic #fyp
jackieoftherepublic

jackieoftherepublic

0 likes

Check out this website that helps you when you’re feeling uninspired! I walk you thru the process of downloading the svg file to taking it to cricut design space! Happy crafting. #designinspo #creativeart #cricutprojects #svgfiles #CricutTips
VlunaWorks

VlunaWorks

36 likes

😫 Wanting to quit your 9-5?
Becoming a Pinterest Manager might be for you! In less than a year, I went from earning $2K at my 9-5 to over $4K/month with Pinterest management alone. Now, with all the different skills and platforms I lesrned, I make anywhere from $12-15K A MONTH! Back then, I knew I had to do something
Bria | Social, Design, & AI

Bria | Social, Design, & AI

482 likes

You need TikTok ?
Here is how you can download TikTok if you need help with and apple phone just ask me I can help with Apple phone you need to change your region on the Apple Pay store
Ali

Ali

10 likes

✨ Stand out during the holidays with this combo!
Tonight's combo is one that will make you stand out. Key notes: Honey, vanilla, amber. With a light hint of tobacco. 💌 Brand: @TheTipsyGoatSoapCompany Honey Toffee 💌 Brand: @Jebouri | Arabian Perfumery honey amber 💌 Brand: @Guerlain Tobacco Honey #عطر #عطور #perfumetiktok #
✨it's malware✨

✨it's malware✨

1 like

Elite Hacker Destroyed His Empire By Forgetting On
Bro, I really forgot to use a VPN 💀 #hacker #cybercrime #fail #tech #arrestedstupidly
arrestedstupidly

arrestedstupidly

1 like

How to Make a Dyson Sphere in Sandboxels
#dysonsphere #science #sciencegames #gaming #pixelart
R74n

R74n

7 likes

Indiana Mish (meesh)

Indiana Mish (meesh)

0 likes

Recover Hidden Files from USB Using Command Prompt
Can’t see your files on a USB stick even though they’re there? This video shows how to use Command Prompt commands (like attrib) to unhide files hidden by system attributes or viruses — plus what to try if that doesn’t work. #USB #cmdanks #windows 11 #techtutorial #newonlemon8
XanthusTechCore

XanthusTechCore

2 likes

Never plug your phone or computer into usb plugs in hotels or airports here’s why 👇🏼 A USB port doesn’t just deliver power, it can also transfer data. A compromised hotel USB outlet could secretly install malware on your phone or copy your data without you realizing it. Hotels, airports, and o
Cybersecurity Girl

Cybersecurity Girl

147 likes

A desk setup with a MacBook and a large monitor displaying 'ALL YOUR FAVORITE APPS in One Subscription for Mac & iOS'. The MacBook screen shows various app interfaces for tasks like file conversion and project planning.
A screenshot of the Setapp app interface, showing categories like Mac, iOS, and Web Apps, along with a list of premium applications. Text highlights accessing 100+ apps for a single monthly price.
Three app interfaces demonstrating Mac cleaning, code writing, and a focus timer. Text emphasizes streamlining workflow by organizing menu bar apps to boost productivity, available on iOS-Mac.
Favorite Apps in One Subscription for Mac & iOS
Why Setapp is a Must-Have: One Subscription, Many Apps: Access 240+ premium apps for a single monthly price—no need for separate subscriptions.  Easy Search & Download: Find the perfect productivity tool with a simple search and download it instantly.  Streamlined Workflow: Organize your
Reverelia

Reverelia

50 likes

Solved: exFAT Drive Not Recognized in Windows 10
Why exFAT drive not recognized in Windows 10/11 and what’s the best solution to it? Read the following post to get the answers. #drive #filesystem #recognized
Techcrafter

Techcrafter

0 likes

A series I’ve wanted to do forever! As a cyber security expert and bridal makeup artist I hope to share cyber concepts in easy to understand makeup metaphors! Let me know in the comments what topics interest you 💕 #makeupandmalware #mascara #cybersecurity @Lancôme
Betsy H

Betsy H

3 likes

@Chloe Johnson @Beth Middleton
JohnMattRasalan

JohnMattRasalan

1 like

A few updates to my journal 🖤🤗
#journalthrough #journal
mal<3

mal<3

15 likes

Journal Spreads ive done recently
okay its been a few months but so far i did great with all the stickers i love buyings stickers now as a comfort thing idk how to say it ig? but overall my journal spreads look so good so far i hope yall like it js as much as i do<3 anywho im waiting for an upcoming concert to add i cant wait to
mal<3

mal<3

162 likes

+it’s less than 80$✨❗️LINK for this item in my bio❗️
Details⬇️: This flip phone smartphone with a flip keyboard design, offering both the convenience of a traditional keypad and the functionality of a modern touchscreen device. With 4GB of internal storage, you'll have plenty of space for apps, photos, and more. The compact 3.5" displa
Atlas

Atlas

443 likes

SOS!!! Wha do you do if you click a phishing email link… two times?!? So far I have: 1, added two factor sign on 2, changed my passwords 3, stress cried and spiraled But for real. What do you do… how do I know if there is now malware (? Is that what it’s called ?) living on my computer?!?
Alexandra Wildeson

Alexandra Wildeson

2 likes

#podcast #podcastclips #tools #fyp #diy #satisfying #story #relaxingvideos #nba
Kalani Vesey

Kalani Vesey

0 likes

This is the newest way people are getting hacked and if you use AI to answer your questions and give you advice, you need to watch this.Thanks to Huntress for reporting this Follow for more
Cybersecurity Girl

Cybersecurity Girl

15 likes

ERROR ERROR ERROR ERROR ERROR
🔺️!!!Flashy!!!🔺️ Um guys... Something is definitely wrong with my tablet 😬😨 #rewritesonic #malware #sonicexe #sonicthehedgehog #sonicfanart
EmK & Fidgi

EmK & Fidgi

2 likes

#cybersecurity #studying #studytok #studywithme #BackToSchool
study with me 📚

study with me 📚

22 likes

#cybertips
brickyah1

brickyah1

0 likes

#fy #fyp #fypシ゚viral #horrorgame Just tired of getting jumped😭, go subscribe to my YT channel.
dis-MALware

dis-MALware

3 likes

watch the whole video like share and follow me
#fypシ
John Damico

John Damico

1 like

Revelry in the Dark
#myheroacademia #mha #bokunoheroacademia #bnha #tokoyami
Malware X20

Malware X20

5 likes

Oscar Esparza Hacker

Oscar Esparza Hacker

0 likes

choose this! not this!
do you love musk and vanilla as much as I do? #vanilla musk #perfume
✨ Malware Noir ✨

✨ Malware Noir ✨

0 likes

Tech jobs/careers, interview help & nice cabling
(1st) If you want to get into tech, it’s never too late! Pick one or more and research to see what you would like to do. (2nd) Soft skills to get through interviews when they may ask, “What kind of skills do you have?”. (3rd) Just some nice cabling from a proficient(expert) tech employee. Nice to
Lemon8

Lemon8

5 likes

Declutter my mac with me! 💻
Join me on a journey to declutter my Mac and streamline my digital life! 🖥️✨ In this Lemon8 post, I'll be tackling the clutter one file at a time, organizing folders, deleting unnecessary documents, and optimizing storage space. Say goodbye to digital chaos and hello to a clean, efficient Mac s
Ayesha 🍋

Ayesha 🍋

82 likes

Free SVG files for Cricut Design Space. If you’re dealing with crafter’s block, this website has tons of free SVG downloads to spark new project ideas for shirts, stickers, bookmarks, and more. Save this for your next Cricut project and start creating again 💕 #designinspo #creativeart
VlunaWorks

VlunaWorks

3 likes

You Won’t Expect This
You Won’t Expect This #thenewearth #newearth #earth #multidoimensional #dimension
Smooth DoubleB

Smooth DoubleB

0 likes

A pink iMac setup on a white desk, featuring a keyboard, mouse, a green drink, decorative figurines, flowers, and makeup products. The screen displays a landscape painting, and 'lemon8 @peachie.suga' is visible.
A digital slide titled 'Software & System Security' with tips to keep browsers and OS updated, install antivirus, and turn on firewalls. It features a shield icon and 'lemon8 @peachie.suga'.
A digital slide titled 'Email & Messaging Safety' with tips to be suspicious of urgent emails, avoid shady attachments, and watch out for fake notifications. It features an envelope icon and 'lemon8 @peachie.suga'.
how to protect your devices from viruses! Pt 2
‧°𐐪♡𐑂°‧₊ 💌 Your device & inbox deserve protection too 💻📬 Here are small but powerful ways to stay safe online: 🛡️ Software & System Security – always update your OS & browser, turn on your firewall, and scan regularly for threats 📧 Email & Messaging Safety – avoid suspicious lin
peachiesuga ♡

peachiesuga ♡

30 likes

A colorful Disney tattoo of Stitch from Lilo & Stitch on an arm, featuring a watercolor-style blue and purple splatter background. The character is depicted with a wide, happy grin and outstretched arms, showcasing a vibrant and playful design.
A Disney tattoo on an arm featuring Thumper from Bambi, sitting among purple and blue flowers and tall grass. The tattoo includes the text "Macushla R.I.P. Johnny" below the character, rendered in a traditional tattoo style.
A traditional-style Disney tattoo on a leg depicting Esmeralda from The Hunchback of Notre Dame. She is shown in a flowing purple dress, holding a large crescent moon or hoop, surrounded by golden stars. The text "From my flash! Tiny blast over" is visible.
🏰✨Disney Tattoos✨🏰
Did you know, I’m a HUGE Disney nerd! It’s always a treat whenever I get to do something based on Disney, small or big, flash or custom 🥰 Here’s just a small compilation of some of my favorites! #disney #disneytattoo #tattoo #tattooartist #traditionaltattoo
Malware 🔜 FC

Malware 🔜 FC

375 likes

Layering combo
💌 Brand: soul de Janeiro 💌 Brand: EBeauty Colletion 💌 Brand: Avery's Jewel 🎶 Notes: Pistachio, pepper, vanilla this combo is smooth and exotic!
✨it's malware✨

✨it's malware✨

1 like

Junior G

Junior G

0 likes

See more