Search

New OS X Malware Spotted in the Wild Hints at Hacking Team's Return

Advertisement
New OS X Malware Spotted in the Wild Hints at Hacking Team's Return

More than six months after the infamous surveillance firm Hacking Team disappeared in the wake of a massive breach on its own network, it seems the Italian software company is prepping a return to the game.

Security researchers have found new OS X malware in the wild that they believe has been developed by Hacking Team. The malware, researchers note, installs a copy of the software firm's Remote Code Systems compromise platform, leading them to believe that the infamous, controversial Italian firm is back.

The malware in question installs different programs on a computer. "The dropper is using more or less the same techniques as older Hacking Team RCS samples, and its code is more or less the same," wrote security researcher Pedro Vilaca.

The Hacking Team suffered a massive breach on its network last July. The hack saw over 400GB of data including sensitive information such as firm's relationship with governments, emails, source code, and exploits published online. The group has been mysteriously quiet since. "Either this is an old sample or HackingTeam are still using the same code base as before the hack," Vilaca wrote.

The sample was uploaded on Google-owned VirusTotal last month, and at the time, no popular antivirus program was able to detect it. At the time of writing, 15 antivirus programs including AVG, Eset-Nod 32, F-Secure, BitDefender, and TrendMicro were able to detect it.

Patrick Wardle of Synack security firm believes that the installer was last updated in October or November last year. He added that the sample of malware utilises most of the same code as old Hacking Team malware.

"I just found some unique code in this dropper. This code checks for newer OS X versions and does not exist in the leaked source code," Vilaca wrote. "Either someone is maintaining and updating HackingTeam code (why the hell would someone do that!?!?!) or this is indeed a legit sample compiled by HackingTeam themselves. Reusage and repurpose of malware source code happens (Zeus for example) but my gut feeling and indicators seem to not point in that direction."

Many questions remain unanswered for now. It is not clear how this malware gets installed on a system. Wardle, however, has found out a way to check if your Mac is infected with it. He urges users to check for a file "Bs-V7qIU.cYL" in a folder called "~/Library/Preferences/8pHbqThW/ directory."

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. Dolby Cinema is Coming to These Theatres in Six Indian Cities
  2. Poco C71 India Launch Date, Design, Price Range, Key Features Confirmed
  3. Vivo Y300 Pro+ and Vivo Y300t Launched With Massive Batteries
  4. US CFTC, FDIC Revoke Crypto-Related Restrictions for Banks: All Details
  5. Redmi A5 With Unisoc T7250 SoC, 5,200mAh Battery Launched: See Price
  6. Realme Narzo 80 Pro 5G, Narzo 80x 5G India Launch Date Announced
  7. Haier M80F Series Mini LED 4K Smart TVs Launched in India: See Price
  8. Apple Intelligence for iPhone Comes to India With iOS 18.4 Update
  9. iOS 19 to Bring 'Glassy' Effects to iPhone: Mark Gurman
  1. US CFTC, FDIC Revoke Crypto-Related Restrictions for Banks: All Details
  2. Amazon Introduces Nova Act AI Agent as Research Preview, Expands Access to Its Frontier AI Models
  3. Asus Teases Next-Gen ROG Ally Model That Could Arrive as a Portable Xbox Handheld
  4. Amazfit Bip 6 With 1.97-Inch AMOLED Display, Up to 14 Day Battery Life Launched: Price, Features
  5. Monster Hunter Wilds Sells 10 Million Copies, Sets Capcom's First-Month Sales Record
  6. Realme Narzo 80 Pro 5G, Narzo 80x 5G India Launch Date Set for April 9; Specifications, Price Range Teased
  7. Microsoft Is Expanding Snapdragon-Exclusive AI Features to Intel, AMD-Powered Copilot+ PCs
  8. Vivo X200s Design Officially Teased; to Launch in April Alongside Vivo X200 Ultra, Pad 5 Pro, Pad SE, Watch 5
  9. BenQ W2720i AI Home Cinema Projector With 4K HDR Output and Android TV OS Launched in India
  10. Apple Watch Series 10 Prototype Leak Reveals Unidentified Health Sensor
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »