logo

New MacSync Malware Exploits Apple Notarization to Steal User Credentials

ID: 3d2be7d9-3073-54b5-af8f-4180acf72c2c

STIX ID: report--3d2be7d9-3073-54b5-af8f-4180acf72c2c

Feed Name: ThreatCluster

Threat Score
51/100

Date Published: 2025-12-22

Date Updated: 2026-03-31

...
...

A new variant of the MacSync credential-stealing malware has been observed abusing Apple's notarization process to appear legitimate on macOS and bypass security controls; reports note social-engineering tactics used to induce installations and cite multiple news sources, though the report provides limited technical details and no IoCs.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.