1 min read

Mac Malware is Becoming a Bigger Threat for Users

In late 2020 a new strain of malware called UpdateAgent appeared and began infecting Mac users.

Initially the strain wasn’t all that worrisome.  It stole system information but it was by no means the worst threat on a Mac user’s radar.

Since that time, the hackers behind the malicious code have been busy. UpdateAgent has received a few developments, with each one adding a new element of danger to the equation.  As things stand now UpdateAgent should be considered a serious threat to Mac users.

As of its latest iteration UpdateAgent installs an annoyingly persistent adware strain called Adload. It has gained capabilities that make it easy for UpdateAgent to install other even more threatening and damaging payloads in the future.

Microsoft has been investigating and following the development of UpdateAgent.  The company has discovered that the hackers who created the strain are hosting a wide range of other payloads on Amazon Web Services’ S3 and CloudFront services. While these have not yet been tied to UpdateAgent, it’s a clear sign of the shape of things to come.

In addition to that, the code is now capable of fetching compressed zip files instead of .dmg files. It has been modified to prevent Gatekeeper from displaying pop-up warnings to users.  It can also inject persistent code inside background processes that are invisible to the user.

Microsoft had this to say about their study of the malware strain:

“UpdateAgent is uniquely characterized by its gradual upgrading of persistence techniques, a key feature that indicates this trojan will likely continue to use more sophisticated techniques in future campaigns. 

Like many information-stealers found on other platforms, the malware attempts to infiltrate macOS machines to steal data and it is associated with other types of malicious payloads, increasing the chances of multiple infections on a device.”

If UpdateAgent wasn’t on your radar before it certainly belongs there now.  It’s one to watch  out for in the year ahead.

Used with permission from Article Aggregator

Integration Nightmares: Avoiding Incompatible Legal Software

Integration Nightmares: Avoiding Incompatible Legal Software

Legal software shouldn’t sabotage your practice. If your law firm has battled systems that just won’t play well together, you know the pain of...

Read More
Avoiding Regulatory Regrets: Starting Your Law Practice in Portland

Avoiding Regulatory Regrets: Starting Your Law Practice in Portland

Ever wonder what happens when a brand-new law firm waltzes into Portland with more enthusiasm than regulatory savvy? Spoiler alert: the Oregon State...

Read More
Avoiding Cloud Compliance Pitfalls in Legal Document Storage

Avoiding Cloud Compliance Pitfalls in Legal Document Storage

As more law firms adopt cloud storage, the appeal is obvious. It’s faster to access case files, easier to collaborate across offices, and cheaper...

Read More

Update Apple Devices Soon for Important Security Patch

Apple released a very important security update today. The update fixes a pair of zero-day vulnerabilities that have been spotted in use in the wild...

Read More

Skype Adds Zoom Feature and Additional Modern Updates

Are you a Skype user? If so be aware that Microsoft (the company that owns Skype) just added a handy new feature you may want to start taking...

Read More

Update Your All In One SEO Plugin For Security Patch

Do you own and operate a WordPress website? Do you also use the “All in One” SEO plugin?

Read More