National Cyber Warfare Foundation (NCWF) Forums


Back To School Reminder – Keep Your Mac Clean!


0 user ratings
2023-08-28 12:43:19
milo
Blue Team (CND)

 - archive -- 

Key points from our research:



  • Around early-mid August, we noticed an increase in MacOS malware detections, specifically AdLoad and UpdateAgent in IronDome, in the education sector. This timing correlates with students returning to school, therefore bringing their personal (infected) devices to school networks, and is likely the cause of this increase.

  • Our CyOC discovered previously unreported IOCs relating to AdLoad and UpdateAgent, including HTTP User Agents, HTTP Paths, and domains. Additionally, some IOCs discovered have been reported since 2019, which indicates the techniques the threat actors are using have been around for years and continue to compromise systems. These IOCs are available in the Appendix section.

  • IronDefense was able to detect this activity via multiple different analytics, including our Suspicious File Download, Beaconing, and Domain Analysis behavioral analytics. IronDome correlated this activity together and uncovered five more enterprises affected.


The post Back To School Reminder – Keep Your Mac Clean! appeared first on Security Boulevard.





Source: Security Boulevard
Source Link: https://securityboulevard.com/2023/08/back-to-school-reminder-keep-your-mac-clean/


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2024 - National Cyber Warfare Foundation - All rights reserved worldwide.