LightSpy Malware Variant Targeting macOS | Huntress
Tags
country: India
maec-delivery-vectors: Watering Hole
attack-pattern: Malware - T1587.001 Malware - T1588.001
Common Information
Type Value
UUID 6f95cc8a-2394-4190-8089-a3346e5df1e2
Fingerprint a794509d5d3701cf
Analysis status DONE
Considered CTI value 2
Text language
Published April 11, 2024, midnight
Added to db Aug. 31, 2024, 9:39 a.m.
Last updated Nov. 17, 2024, 6:54 p.m.
Headline LightSpy Malware Variant Targeting macOS
Title LightSpy Malware Variant Targeting macOS | Huntress
Detected Hints/Tags/Attributes 40/3/9
RSS Feed
Details Id Enabled Feed title Url Added to db
Details 318 Huntress Blog https://www.huntress.com/blog/rss.xml 2024-08-30 22:08
Attributes
Details Type #Events CTI Value
Details Domain 1
irc.pid
Details Domain 17
www.threatfabric.com
Details Domain 403
securelist.com
Details File 2
macmanifest.json
Details sha1 1
afd03337d1500d6af9bc447bd900df26786ea4a4
Details sha256 2
0f66a4daba647486d2c9d838592cba298df2dbf38f2008b6571af8a562bc306c
Details Threat Actor Identifier - APT 522
APT41
Details Url 1
https://www.threatfabric.com/blogs/lightspy-mapt-mobile-payment-system-attack
Details Url 3
https://securelist.com/ios-exploit-chain-deploys-lightspy-malware/96407