
Welcome to New York, it's been waitin' for you. [Research Saturday]
CyberWire Daily
00:00
TF453's Attempt to Infect a Mac OS System With Malware
A week later, we saw them send another infection chain, this time designed for Macs. What I think is interesting here is not only did they send the attachment, which was masquerading as a VPN application, but they also set up a decoy website for an FTP server. So if you go to that decoy website, no matter what password you use, whether it's when they provide or whether you try to put your own in, it doesn't work. And the idea would be is that they're trying to social engineer the target into making sure that they actually do run them out.
Play episode from 07:53
Transcript


