Automatically translated.View original post

MacOS users beware of the new malware SHub Reaper.

Alarm macOS users Beware of the new malware SHub Reaper has a variety of data theft capabilities.

According to a report by the Techrepublic website, a report from the research team of SentinelOne, a company that develops enterprise cybersecurity tools that detect malware that steals data from victims, or a new Infostealer that specifically focuses on attacks on macOS users, the malware is called SHub Reaper, another subspecies in the SHub family.

This malware has the ability to steal various forms of data, such as passwords on web browsers (covering a variety of web browsers such as Chrome, Firefox, Brave, Edge, Opera, Vivaldi, Arc, and Orion), Crypto Wallet, covering a wide range of web browser extension wallets such as Exodus, Atomic, Ledger Live, Electrum, and Trezor Suite, developer settings (Developer Configuration Files), Session data, Telegram chat applications, and user information. Apple services, such as Data on Keychain and iCloud, etc., also use tools like Filegrabber to scan for business-related files with .docx, .doc, .wallet, .key, .keys, .txt, .rtf, .csv, .xls, .xlsx, .json, and .rdp. Files are also used to scan for business-related files with .PNG genus scanning tools smaller than 6MB and other smaller files smaller than 2MB. All stolen files are stored in the / tmp / shub _ zip folder. All stolen data is sent to the Extrusion and Control (Extrusion) server.

In the field of malware distribution, it starts by using social engineering or social engineering methods. By creating fake websites into the websites of famous applications such as Miro and WeChat. During downloading, the source URL of the file is a URL that mimics the infrastructure of Microsoft to avoid suspicion of the origin. After the malware is installed, the malware immediately requests permissions to access the system from the victim to avoid the ClickFix scam detection system (error fraud system, so that the victim runs the script to download and install the malware. Hackers) This is usually a trick for the victim to place the script on the Terminal app and run. In this case, the malware uses a script that starts with applescript: / / URL. The script is preloaded to the editor of macOS. This gives the victim the task of simply pressing Run and entering the password of the system. The password entered by the victim is decrypted. All passwords on the system are decrypted.

In addition, the malware has the ability to remain persistent on the system (Persistence) by using a Base64 encrypted script file named in imitation of the Google Software Update file name called GoogleUpdate. The script file is set to contact the C2 server every 60 seconds to receive malware commands and allow for the installation of additional malware, usually not only backdoor malware. This channel is also used to smuggle Exfiltration files to the server.

# Trending # Lemon 8 Howtoo # lemon 8 diary # macos # freedomhack

6 days agoEdited to

... Read moreจากประสบการณ์ใช้งาน macOS มานาน ผมพบว่าปัญหาการโจมตีจากมัลแวร์ที่ใช้งานวิธี Social Engineering อย่าง SHub Reaper นั้นต้องใส่ใจเป็นพิเศษ เพราะมัลแวร์ตัวนี้ไม่ได้แค่ขโมยรหัสผ่านจากเว็บเบราว์เซอร์ที่ใช้บ่อยอย่าง Chrome หรือ Firefox เท่านั้น แต่ยังเข้าถึงกระเป๋าเงินคริปโตที่ผมถือไว้ในส่วนเสริมบนเบราว์เซอร์ รวมถึงข้อมูลสำคัญใน Keychain และ iCloud ซึ่งถ้าหลงเชื่อแล้วติดตั้งมัลแวร์ จะทำให้ข้อมูลส่วนตัวถูกขโมยไปโดยไม่รู้ตัว สิ่งที่น่ากลัวคือวิธีแพร่กระจายที่ใช้เว็บไซต์ปลอมเลียนแบบแอปชื่อดัง เช่น Miro หรือ WeChat และ URL ที่ทำเลียนแบบโครงสร้างของไมโครซอฟท์ ทำให้เหมือนปลอดภัยจนหลงเชื่อ การที่มัลแวร์ใช้สคริปต์ applescript:// เพื่อหลอกให้เรารันพร้อมกับการขอรหัสผ่านด้วยวิธีนี้ เป็นกับดักที่ทำให้เหยื่อหมดความระมัดระวังได้ง่ายมาก จากประสบการณ์ของผม การป้องกันขั้นต้นที่ได้ผลดีคือ ไม่ดาวน์โหลดไฟล์หรือติดตั้งโปรแกรมจากเว็บที่ไม่น่าเชื่อถือ และไม่กรอกรหัสผ่านในแอปหรือสคริปต์ที่ไม่คุ้นเคย รวมถึงตั้งค่าการแจ้งเตือนความปลอดภัยสูงสุดบน macOS เพื่อจำกัดสิทธิ์การเข้าถึงของแอปพลิเคชันต่าง ๆ สุดท้าย อย่าลืมอัปเดตระบบและซอฟต์แวร์ความปลอดภัยเสมอ เพราะมัลแวร์ตัวนี้ยังใช้ไฟล์สคริปต์ที่ดูเหมือนกับ Google Software Update เพื่อคงอยู่ในระบบและสื่อสารกับเซิร์ฟเวอร์ผู้โจมตี ซึ่งถ้าเราเตรียมตัวไม่ดี ข้อมูลทั้งหลายจะถูกส่งออกไปโดยไม่รู้ตัว การแบ่งปันความรู้และความระมัดระวังนี้จึงเป็นสิ่งสำคัญที่จะช่วยให้ผู้ใช้ macOS ทั่วไปสามารถลดความเสี่ยงและปลอดภัยจากภัยคุกคามไซเบอร์ที่กำลังมาแรงในตอนนี้

Related posts

The image displays the title slide for 'Helpful AI prompts for creators' from 'CREATOR SYSTEMS', aiming to help creators create faster, organize smarter, and stop rebuilding processes from scratch. It encourages users to swipe for prompts.
The image presents 'PROMPT 05: Turn your expertise into a series'. The prompt asks AI to help turn expertise on a topic into 5 recurring content series that educate, build authority, and are engaging. It's for creators who know their stuff but struggle to package it.
The image shows 'PROMPT 01: Turn messy ideas into content'. The prompt asks AI to organize scattered content ideas into 3-5 content pillars, explain each, and suggest recurring post themes. It's for creators with many notes but blurry strategy.
Creator prompts
some helpful ai prompts for creators. I'm deep into ai engineering, don't mind me. #aipromptideas #creatorideas
Bytes' Atelier

Bytes' Atelier

48 likes

Prompts for creators
🌱 From Chaos to Calendar: Ready to move those organized tasks into Notion? Here are 3 simple steps to seamlessly integrate your to-dos into your existing system. Keep it low-friction & effective! Copy & paste your sorted tasks! 📅 #NotionTips #TaskManagement #DigitalOrganization #work
Bytes' Atelier

Bytes' Atelier

10 likes

for the low energy days frfr
Some days I don’t need a 10-step productivity system. I need something gentle enough for a tired brain. Here are 3 AI prompts I use when I’m overwhelmed: 1. “Help me pick the 3 most important things I need to do today. Keep it realistic.” 2. “Turn this messy brain dump into a simple checkli
Bytes' Atelier

Bytes' Atelier

8 likes

It's no secret that Karol G just slayed the #Grammys #Glambot . #AwardsSeason
user6854050772614

user6854050772614

11 likes

Turn Your Perfume Into a Content Idea
A tiny creator prompt for turning your fragrance shelf into content inspiration. Pick one perfume, describe it, or upload a photo — then let AI help you turn the scent into a mood, story, and post idea. #AICreatorPrompt #PerfumeTok #ContentIdeas 📝 Prompt: “Use this perfume as inspir
Bytes' Atelier

Bytes' Atelier

6 likes

Catalog Your Perfumes with AI
Use AI to organize your fragrance collection faster. Upload photos, paste your perfum list, or use voice-to-text notes, then have AI turn everything into a clean Notion-ready database with notes, scent families, seasons, ratings, and wishlist status. Perfect for perfume lovers who want their colle
Bytes' Atelier

Bytes' Atelier

6 likes

A desk setup with a curved monitor displaying a pink grid wallpaper and pixel art juice boxes. An overlay on the screen reads "How to Make Your PC Run Faster – 5 Easy Tips!". A keyboard, laptop, and drink are on the desk, with a Lemon8 watermark.
A desk setup with a monitor displaying tips for a faster PC, including "Upgrade Your Storage & RAM," "Keep Your Drivers & OS Updated," and "Check for Malware & Viruses." An overlay highlights "Upgrade Your Storage & RAM and more!" with a Lemon8 watermark.
A desk setup with a monitor displaying instructions for "Disable Startup Programs" and "Clean Temporary Files." The screen shows steps like using Task Manager and deleting temporary files. A keyboard, laptop, and drink are on the desk, with a Lemon8 watermark.
⚡ How to Make Your PC Run Faster – 5 Easy Tips! 🖥️🔥
💡 1. Disable Startup Programs 🚀 Too many apps launching at startup slow down your PC! ✅ Open Task Manager (Ctrl + Shift + Esc) ✅ Go to the Startup tab ✅ Disable unnecessary apps to speed up boot time 💡 2. Clean Temporary Files 🗑️ Over time, junk files slow your system down. ✅ Press Win
skaeszun

skaeszun

284 likes

Turn Jumbled Ideas into a Content Plan
A cozy creator prompt for sorting through messy thoughts when your brain feels too full to start. Use AI to organize what’s already in your head into clear themes, possible post ideas, and one simple place to begin. Perfect for overwhelmed creators who need a softer way to plan content without sta
Bytes' Atelier

Bytes' Atelier

5 likes

☕️ messy notes ??
Turn your chaotic brainstorming into clear, actionable steps! This prompt helps you organize thoughts and find a gentle path forward. Copy & paste your brain dump and let AI do the heavy lifting #AIPrompts #NotionAI #OrganizedThoughts #aipromptsforbusiness
Bytes' Atelier

Bytes' Atelier

5 likes

Check out this website that helps you when you’re feeling uninspired! I walk you thru the process of downloading the svg file to taking it to cricut design space! Happy crafting. #designinspo #creativeart #cricutprojects #svgfiles #CricutTips
VlunaWorks

VlunaWorks

47 likes

How to Make a Dyson Sphere in Sandboxels
#dysonsphere #science #sciencegames #gaming #pixelart
R74n

R74n

7 likes

A young woman with long dark hair, wearing a pink satin shirt, smiles at the camera while sitting at a table. Overlay text reads: 'Tools and sites I use as a cybersecurity student to progress my skills and keep me interested in studying'.
A screenshot of 'The Hacker News' website, displaying various cybersecurity news articles from January 2025, including topics like vulnerabilities, malware, cyber espionage, and AI jailbreak methods. An ad for Zscaler and a banner for CIS Hardened Images are also visible.
A screenshot of the O'Reilly learning platform, showing various books and expert playlists related to AI, engineering, and data. Overlay text highlights the subscription cost ($50/month or $499/year) and its value for accessing books and live events.
Tools and sites I use as a cybersecurity student 🌸
#cybersecuritystudent #cybersecurity #techgirlie
LexiStudies

LexiStudies

107 likes

A colorful Disney tattoo of Stitch from Lilo & Stitch on an arm, featuring a watercolor-style blue and purple splatter background. The character is depicted with a wide, happy grin and outstretched arms, showcasing a vibrant and playful design.
A Disney tattoo on an arm featuring Thumper from Bambi, sitting among purple and blue flowers and tall grass. The tattoo includes the text "Macushla R.I.P. Johnny" below the character, rendered in a traditional tattoo style.
A traditional-style Disney tattoo on a leg depicting Esmeralda from The Hunchback of Notre Dame. She is shown in a flowing purple dress, holding a large crescent moon or hoop, surrounded by golden stars. The text "From my flash! Tiny blast over" is visible.
🏰✨Disney Tattoos✨🏰
Did you know, I’m a HUGE Disney nerd! It’s always a treat whenever I get to do something based on Disney, small or big, flash or custom 🥰 Here’s just a small compilation of some of my favorites! #disney #disneytattoo #tattoo #tattooartist #traditionaltattoo
Malware 🔜 FC

Malware 🔜 FC

377 likes

Ai Prompt to start the day.
It's hump day, I have been working on two sprints(projects). I need to remember where I left off yesterday. I simply ask my agent where we left off and where to pick up. That is it. #aiprompt #aipromptsforcreators #aiprompts #agents
Bytes' Atelier

Bytes' Atelier

4 likes

love these 💋
have you tried kst? #perfumerecommendations #pride🌈 #perfumecollection
✨ Malware Noir ✨

✨ Malware Noir ✨

6 likes

Elite Hacker Destroyed His Empire By Forgetting On
Bro, I really forgot to use a VPN 💀 #hacker #cybercrime #fail #tech #arrestedstupidly
arrestedstupidly

arrestedstupidly

1 like

You need TikTok ?
Here is how you can download TikTok if you need help with and apple phone just ask me I can help with Apple phone you need to change your region on the Apple Pay store
Ali

Ali

10 likes

🎨 Cozy Notion AI Prompt Pack: OS Lessons
Transform your Notion workspace with this cozy prompt pack! Learn how to use Notion AI with lessons from my personal operating system for gentle productivity and effortless organization. Perfect for beginners looking to integrate AI into their daily flow. #Notion #NotionAI #Productivity #
Bytes' Atelier

Bytes' Atelier

3 likes

Olas just wandeing off at Disneyland Paris at the New World of Frozen coming next March! Beyond cute #disneyland #WorldOfFrozen #frozen #disneyadventureworld #disneylandparis
gez9knzxvzz

gez9knzxvzz

1 like

my robot 🤖
I made a book about this robot and his life. My son did the rough drawings and we used AI to animate it. I call them botanibots #animation #ai #digitalart
Bytes' Atelier

Bytes' Atelier

2 likes

Reusable AI Prompts for Dashboards, Databases...
Notion Skills Prompt Pack for turning your ideas into reusable Notion AI workflows. Includes 5 prompt cards for dashboards, databases, workflows, projects, and content planning. Save each prompt as a Notion page, mark it as a Skill, and reuse it whenever you need a simple system. #aiprompts #ai
Bytes' Atelier

Bytes' Atelier

9 likes

#fy #fyp #fypシ゚viral #horrorgame Just tired of getting jumped😭, go subscribe to my YT channel.
dis-MALware

dis-MALware

3 likes

💚🖤 #fyp #fypシ #fypシ゚viral #foryoupage #inspire #in
💚🖤 #fyp #fypシ #fypシ゚viral #foryoupage #inspire #inspiration #goviral #motivation #motivate #dankvisionz
Lisa Marie 💚🖤

Lisa Marie 💚🖤

6 likes

😋
If you want to smell like a sexy milk maiden, this is for you. 💕 idk what happened to my audio
✨ Malware Noir ✨

✨ Malware Noir ✨

1 like

Back Up Outlook Emails to an External Hard Drive
Need to back up your Outlook emails to an external hard drive? Here are 2 simple methods to help you out. Download AOMEI Backupper and give it a try! #backup #outlook #externalharddrive
SmoothTechie

SmoothTechie

1 like

SATURDAY | 2 MAY 2026 | Cybersecurity Report
The digital frontlines just got a lot more dangerous. Today on Cyber F.M., host Arias Thomas breaks down the industrialization of cybercrime and the collapse of the software supply chain. If you think your "secure" tools are safe, think again. Inside Today’s Broadcast: 🏮 The Paperclip
Cyber F.M.

Cyber F.M.

3 likes

custom background
I love making these custom backgrounds. #creatorideas #background #digitalart
Bytes' Atelier

Bytes' Atelier

0 likes

Why I switched to taking notes on my iPad
I used to love writing in notebooks, but after switching to my iPad, I can confidently say I’m never going back! Here’s why: ✨ Cuter Notes – Let’s be real…aesthetic notes make studying more enjoyable! I can use custom colors, cute stickers, and different handwriting styles to make my notes visua
Rebecca R.

Rebecca R.

267 likes

A laptop with a cloudy sky wallpaper and a white cup with a red logo. Text overlay reads: 'Free Websites That Saved My GPA AND MY SANITY Sharing So You Don't Struggle Too'.
A laptop screen displays Yahoo search results for 'Quizlet'. An overlay describes Quizlet as a free flashcard tool for memorizing terms, definitions, and formulas, making studying feel like a game.
A laptop screen displays Yahoo search results for 'Unriddle.ai'. An overlay describes Unriddle.ai as a free tool that breaks down notes, articles, or assignments to aid understanding of long readings.
Websites You NEED to Pass Your College Courses
Y’all college is hard enough without trying to figure everything out on your own 😩 So here’s my list of websites that actually helped me pass my classes like, these were in my survival kit. I’m not gatekeeping 🫶🏽 Quizlet When I needed to memorize terms FAST. I used it for flashcards, and the matc
Beauty

Beauty

285 likes

🛡️ The GIS-R10 Controller — Enterprise-Level Power
🚀 The perfect hotspot solution for internet speeds of 400 Mbps! Designed for medium to large hospitality businesses like hotels, resorts, campgrounds, RV parks, marinas, and more, the GIS-R10 makes it easy to provide WiFi access as a complimentary service or a paid option. 🏨🌴🚐⚓ ✨ Why business
Guest Internet

Guest Internet

0 likes

Network Security
In today's interconnected world, network security is more crucial than ever. As technology advances, cyber threats are becoming increasingly sophisticated, putting your personal data and business at risk. In this video, we'll delve into the basics of network security, explaining what it is,
Olo_Bugenyi

Olo_Bugenyi

1 like

A laptop screen displays a glowing shield icon with a padlock, symbolizing security, surrounded by digital particles. A red banner across the top reads "New macOS Malware," indicating a threat to Apple's operating system.
New macOS Malware
New malware targeting macOS with an information stealer program that is designed to take your online information. #macos #cyber
Lemon8er

Lemon8er

0 likes

🚨 16 Billion passwords leaked - the largest breach ever 🚨 Here is how it happened and what you can do to be safe. #news #databreach #cybersecuritytips #onlinesafety
Cybersecurity Girl

Cybersecurity Girl

128 likes

art and scent
Not your typical lactonic combo, but it is comforting and addictive! white rabbit brings rice milk, blanc sol brings creamy milk, and Amber vanilla locks it down.
✨ Malware Noir ✨

✨ Malware Noir ✨

3 likes

look at this poppi
that's all. my friend sent this pic and I need to grow this now! what's your fav flower 😍 #Flower #poppi
Bytes' Atelier

Bytes' Atelier

14 likes

Create the Perfect Relaxing Fragrance Combo with A
Use AI with your fragrance database to find calming perfume pairings for a softer, more relaxing vibe. This prompt helps you choose scent combos based on mood, notes, season, projection, and when to wear them. Perfect for perfume lovers who want to create cozy scent rituals from fragrances they al
Bytes' Atelier

Bytes' Atelier

2 likes

art
random drawing I did last night #art
Bytes' Atelier

Bytes' Atelier

1 like

Malicious Android App
Cybercriminals are using fake ATT apps to distribute malware #cybersecurity #Android
Lemon8er

Lemon8er

0 likes

A vibrant cover image featuring Anjali Viramgama amidst confetti, with the title "Top Cybersecurity Certificates." It highlights key certifications for advancing skills and knowledge in cybersecurity.
A card detailing the Certified Information Security Manager (CISM) certification. It explains CISM focuses on managing information security programs, covering risk management, governance, and incident response.
A card detailing the Certified Ethical Hacker (CEH) certification. It explains CEH focuses on ethical hacking and penetration testing, covering topics like network scanning, malware threats, and social engineering.
Top Cybersecurity Certificates
There are several reputable cybersecurity certifications that can help you advance your skills and knowledge in the field of cybersecurity. 1. Certified Information Systems Security Professional (CISSP): - CISSP is a globally recognized certification that covers a wide range of cybersecurit
anjali.gama

anjali.gama

111 likes

Unable to Initialize Hard Drive? Fix it Now
Find out how you can fix this issue and initialize your hard drive with ease using Partition Assistant, ensuring no data is lost during the process. #hdd #fix #repair #disk
SmoothTechie

SmoothTechie

0 likes

Squid Game Cookies in Sandboxels
#game #gaming #baking #squidgame #dalgona #games
R74n

R74n

87 likes

Happy Pride 🌈 Smell Gay 💋
KST is a true fragrance artist! and my clients are addicted to the Banana Milk Coffee. They have told me it's the perfect summer coffee scent. Other clients like Gay Oppa and P*ssy Power more. And I know they plan on wearing them to pride events ⭐️Overall rating: 10/10 #bananaperfumes
✨ Malware Noir ✨

✨ Malware Noir ✨

1 like

Never plug your phone or computer into usb plugs in hotels or airports here’s why 👇🏼 A USB port doesn’t just deliver power, it can also transfer data. A compromised hotel USB outlet could secretly install malware on your phone or copy your data without you realizing it. Hotels, airports, and o
Cybersecurity Girl

Cybersecurity Girl

149 likes

This image introduces the problem of a folder appearing empty on Windows despite containing files, with the title "'This Folder Is Empty' Error on Windows? - Complete Fixes." It includes a screenshot of a File Explorer window displaying the "This folder is empty" message.
This image outlines the first three step-by-step fixes for the "This folder is empty" error. It details how to show hidden files and folders on Windows 11 and 10, use the ATTRIB command in CMD, and repair file system errors using chkdsk.
This image presents the final three step-by-step fixes for the "This folder is empty" error. It covers scanning for malware, updating USB and disk drivers, and using data recovery software as a last resort, including a mention of MyRecover.
“This Folder Is Empty” But Files Are There? Fix It
Seeing “This folder is empty” even though your files should still be there? This issue is often caused by hidden files, corrupted file systems, virus infections, or drive connection problems.This video shows how to reveal hidden files, repair disk errors, recover missing data, and fix folders that
XanthusTechCore

XanthusTechCore

0 likes

A Ben 10 gym audio for you. #fyp #gym #ben10 #ben10omniverse #audio
IzzyywiththeZ

IzzyywiththeZ

0 likes

#tvshow #thecapture
nicemovie💕💕

nicemovie💕💕

2 likes

Popular CVE vulnerability scanners
CVE scanners help find known vulnerabilities in software and systems by checking them against the CVE database. Here are a list of popular open-source or commercial CVE scanners 😎👆 Find high-res pdf ebooks with all my cybersecurity related infographics at https://study-notes.org #cybersec
Dan Nanni

Dan Nanni

1 like

The #Python Foundation turned down a $1.5m grant from #nsf so they could continue to support #DEI . Please make sure to go support python.org so they can continue to do great things.
Bentley Hensel

Bentley Hensel

9 likes

See more