This $49 malware could steal all your Mac data Malware


Security researchers from Check Point Research have observed a new strain of malware in the wild that has evolved to steal data from MacOS users.
This new strain is named “XLoader” and is derived from the infamous Formbook malware that has been active for over five years. While Formbook was initially created to be a simple keylogger, cybercriminals saw its potential has a universal tool which led its creator to stop sales of the product before relaunching it as XLoader.
While Formbook was used to primarily target Windows users in the past, after its rebranding as XLoader last year, it gained additional capabilities including the ability to target Macs.
What makes XLoader particularly dangerous is the fact that a license for the malware can be purchased on the Dark Web for as little as $49. Cybercriminals who purchase an XLoader license are then equipped to harvest log-in credentials, collect screenshots, log keystrokes and execute malicious files on victim’s machines.
XLoader malware
Check Point Research tracked XLoader activity between December of last year and June of this year to discover that over half (53%) of victims infected with the malware reside in the United States. Hong Kong was the second hardest hit at just nine percent followed by Mexico and Germany at five percent and three percent respectively.
As XLoader is spread using spam emails that contain malicious files, Check Point Research recommends that users avoid opening suspicious email attachments, visiting suspicious websites and using malware removal software to avoid having their Mac or PC infected.
However, if you think your system has become infected, the cybersecurity firm says that ordinary users should consult with a security professional as XLoader is stealth in nature and difficult to detect.
More experienced users can run Autorun on their Macs, check their username in the OS, go to /Users/[username/Library/LaunchAgents directory and look for suspicious filenames to see if they are infected. Removing any suspicious files should then also remove XLoader from your system though this method isn’t for the inexperienced.
Head of cyber research at Check Point Software, Yaniv Balmas explained why cybercriminals are increasingly targeting Mac users, saying:
“While there might be a gap between Windows and MacOS malware, the gap is slowly closing over time. The truth is that MacOS malware is becoming bigger and more dangerous. Our recent findings are a perfect example and confirm this growing trend. With the increasing popularity of MacOS platforms, it makes sense for cyber criminals to show more interest in this domain, and I personally anticipate seeing more cyber threats following the Formbook malware family. I would think twice before opening up any attachments from emails I get from senders I don’t know.”
Security researchers from Check Point Research have observed a new strain of malware in the wild that has evolved to steal data from MacOS users. This new strain is named “XLoader” and is derived from the infamous Formbook malware that has been active for over five years. While Formbook was…
Recent Posts
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010