LightSpy Malware Variant Targeting macOS | Huntress
Tags
country: | India |
maec-delivery-vectors: | Watering Hole |
attack-pattern: | Malware - T1587.001 Malware - T1588.001 |
Common Information
Type | Value |
---|---|
UUID | 6f95cc8a-2394-4190-8089-a3346e5df1e2 |
Fingerprint | a794509d5d3701cf |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | April 11, 2024, midnight |
Added to db | Aug. 31, 2024, 9:39 a.m. |
Last updated | Nov. 17, 2024, 6:54 p.m. |
Headline | LightSpy Malware Variant Targeting macOS |
Title | LightSpy Malware Variant Targeting macOS | Huntress |
Detected Hints/Tags/Attributes | 40/3/9 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | https://www.huntress.com/blog/lightspy-malware-variant-targeting-macos |
URL Provider
RSS Feed
Details | Id | Enabled | Feed title | Url | Added to db |
---|---|---|---|---|---|
Details | 318 | ✔ | Huntress Blog | https://www.huntress.com/blog/rss.xml | 2024-08-30 22:08 |
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | Domain | 1 | irc.pid |
|
Details | Domain | 17 | www.threatfabric.com |
|
Details | Domain | 403 | securelist.com |
|
Details | File | 2 | macmanifest.json |
|
Details | sha1 | 1 | afd03337d1500d6af9bc447bd900df26786ea4a4 |
|
Details | sha256 | 2 | 0f66a4daba647486d2c9d838592cba298df2dbf38f2008b6571af8a562bc306c |
|
Details | Threat Actor Identifier - APT | 522 | APT41 |
|
Details | Url | 1 | https://www.threatfabric.com/blogs/lightspy-mapt-mobile-payment-system-attack |
|
Details | Url | 3 | https://securelist.com/ios-exploit-chain-deploys-lightspy-malware/96407 |