<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[North Korea-Linked Lazarus Group Spreads “Mach-O Man” macOS Malware in Crypto Attacks]]></title><description><![CDATA[<p dir="auto"><img src="/forum/assets/uploads/files/1776919750671-c369058c-1d1b-46c2-827c-3572fc8c7670-image.png" alt="c369058c-1d1b-46c2-827c-3572fc8c7670-image.png" class=" img-fluid img-markdown" /><br />
<em>Fake Mach-O Man Kit apps. Source: ANY.RUN</em></p>
<p dir="auto">Security researchers have uncovered a new macOS malware campaign tied to the Lazarus Group, the cybercrime operation widely blamed for some of the largest crypto thefts in history. The newly identified “Mach-O Man” malware kit is being distributed through social engineering schemes that impersonate Zoom or Google Meet calls to trick victims into executing malicious commands.</p>
<p dir="auto">Once installed, the malware quietly downloads in the background, bypassing traditional security controls. It can then extract browser credentials, cookies, password data, and macOS Keychain information, giving attackers deep access to both personal and corporate systems.</p>
<p dir="auto">Researchers say the stolen data is compressed and exfiltrated via Telegram before the malware deletes itself to avoid detection. The campaign highlights how Lazarus Group continues expanding beyond crypto-native targets into broader enterprise environments.</p>
]]></description><link>https://undeads.com/forum/topic/18896/north-korea-linked-lazarus-group-spreads-mach-o-man-macos-malware-in-crypto-attacks</link><generator>RSS for Node</generator><lastBuildDate>Tue, 05 May 2026 04:18:34 GMT</lastBuildDate><atom:link href="https://undeads.com/forum/topic/18896.rss" rel="self" type="application/rss+xml"/><pubDate>Thu, 23 Apr 2026 04:49:26 GMT</pubDate><ttl>60</ttl><item><title><![CDATA[Reply to North Korea-Linked Lazarus Group Spreads “Mach-O Man” macOS Malware in Crypto Attacks on Thu, 23 Apr 2026 09:32:49 GMT]]></title><description><![CDATA[<p dir="auto">“join this meeting” is the new “click this link”</p>
]]></description><link>https://undeads.com/forum/post/51738</link><guid isPermaLink="true">https://undeads.com/forum/post/51738</guid><dc:creator><![CDATA[kevin1]]></dc:creator><pubDate>Thu, 23 Apr 2026 09:32:49 GMT</pubDate></item></channel></rss>