Threat Labs has identified a macOS malware campaign using a fake Zoom installer to deliver a two-stage backdoor named CloudSyncD. The malware tricks users into bypassing Gatekeeper, captures their login password through a fake authorization prompt, and launches an embedded payload designed to communicate with attacker-controlled servers.... Weiterlesen: Fake Zoom Installer Deploys CloudSyncD macOS Backdoor and Hides Passw…
Intelligence View
⚡ tsecurity.de Intelligence
Fake Zoom Installer Deploys CloudSyncD macOS Backdoor and Hides Password in Zero-Width Unicode
Threat Labs has identified a macOS malware campaign using a fake Zoom installer to deliver a two-stage backdoor named CloudSyncD. The malware tricks users into…