Moneycontrol PRO
Loans
Loans
HomeTechnologyHow North Korean hackers are using crypto apps to target Apple Mac devices

How North Korean hackers are using crypto apps to target Apple Mac devices

Hackers associated with North Korea have installed disguised malware in Apple macOS systems by reportedly using Google's Flutter app development tool to bypass security measures.

November 13, 2024 / 17:03 IST
Hackers target macOS

North Korean hackers have reportedly developed a new malware that has evaded the stringent Apple security checks and embedded malware within Google’s Flutter applications. The hackers are reportedly using this app’s development tool to bypass security measures and infect Mac devices. Further, the hackers are targeting cryptocurrency-related businesses with multi-stage malware.

How hackers are using Google’s Flutter to target Mac users?

According to a report by AppleInsider, researchers at Jamf Threat Labs have uncovered malware embedded in macOS devices that look harmless on the surface. However, using popular app-building tools, like Google’s Flutter, cybercriminals have bypassed typical security measures and made consumers download a fake PDF file via phishing emails allegedly providing vital information about cryptocurrency.

Starting in November 2024, Jamf Threat Labs researchers have discovered multiple apps on VirusTotal that appeared to completely bypass all antivirus scans yet showcased "stage one" functionality, connecting to servers associated with North Korean threat actors. In particular, one variant, hidden within a fake crypto exchange game and built with Google's Flutter, downloads malicious scripts to remotely control infected Mac devices.

Moreover, another variant, disguised as a notepad app, utilises confusing AppleScripts to install malware. Once opened, though, the malware file starts a background download process on macOS machines, allowing BlueNoroff to remotely access and gather secret keys to digital cryptocurrency wallets.

Therefore, macOS users are advised to download apps from the Mac App Store only, which ensures stricter security settings are followed, and its timely software updates can help mitigate risks.

Invite your friends and family to sign up for MC Tech 3, our daily newsletter that breaks down the biggest tech and startup stories of the day

Sandip Chakraborty
first published: Nov 13, 2024 05:02 pm

Discover the latest Business News, Sensex, and Nifty updates. Obtain Personal Finance insights, tax queries, and expert opinions on Moneycontrol or download the Moneycontrol App to stay updated!

Subscribe to Tech Newsletters

  • On Saturdays

    Find the best of Al News in one place, specially curated for you every weekend.

  • Daily-Weekdays

    Stay on top of the latest tech trends and biggest startup news.

Advisory Alert: It has come to our attention that certain individuals are representing themselves as affiliates of Moneycontrol and soliciting funds on the false promise of assured returns on their investments. We wish to reiterate that Moneycontrol does not solicit funds from investors and neither does it promise any assured returns. In case you are approached by anyone making such claims, please write to us at grievanceofficer@nw18.com or call on 02268882347