CrashStealer malware bypasses macOS Gatekeeper using a notarized dropper to steal user data

thehackernews.com

A new macOS malware named CrashStealer is stealing sensitive user data by bypassing Apple's security measures. CrashStealer, written in C++, harvests browser, wallet, password manager, and keychain data. It uses a notarized dropper to pass Gatekeeper checks, making it harder to detect. The malware is part of a larger campaign and employs advanced techniques for analysis resistance and data encryption before exfiltration.


With a significance score of 2.7, this news ranks in the top 13% of today's 32067 analyzed articles.

Get summaries of news with significance over 5.5 (usually ~10 stories per week). Read by 10,000+ subscribers:


CrashStealer malware bypasses macOS Gatekeeper using a notarized dropper to steal user data | News Minimalist