Security News > 2021 > July > XLoader Windows InfoStealer Malware Now Upgraded to Attack macOS Systems
Cybersecurity researchers on Wednesday disclosed details of an evolving malware that has now been upgraded to steal sensitive information from Apple's macOS operating system.
While the very first Formbook samples were detected in the wild in January 2016, the sale of the malware on underground forums stopped in October 2017, only to be resurrected more than two years later in the form of XLoader in February 2020.
According to statistics released by Check Point earlier this January, Formbook was third among the most prevalent malware families in December 2020, impacting 4% of organizations worldwide.
It's worth noting that the newly discovered XLoader malware for PC and Mac is not the same as XLoader for Android, which was first detected in April 2019.
"Historically, macOS malware hasn't been that common. They usually fall into the category of 'spyware', not causing too much damage."
"While there might be a gap between Windows and MacOS malware, the gap is slowly closing over time. The truth is that macOS malware is becoming bigger and more dangerous," Balmas noted, adding the findings "Are a perfect example and confirm this growing trend."
News URL
Related news
- JPCERT shares Windows Event Log tips to detect ransomware attacks (source)
- Microsoft Office 2024 now available for Windows and macOS users (source)
- Astaroth Banking Malware Resurfaces in Brazil via Spear-Phishing Attack (source)
- North Korean ScarCruft Exploits Windows Zero-Day to Spread RokRAT Malware (source)
- macOS HM Surf vuln might already be under exploit by major malware family (source)
- Exploit released for new Windows Server "WinReg" NTLM Relay attack (source)
- Russia targets Ukrainian conscripts with Windows, Android malware (source)
- Windows infected with backdoored Linux VMs in new phishing attacks (source)
- VEILDrive Attack Exploits Microsoft Services to Evade Detection and Distribute Malware (source)
- New SteelFox malware hijacks Windows PCs using vulnerable driver (source)