• Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Skip to footer

My TechDecisions

  • COVID-19 Update
  • Best of Tech Decisions
  • Topics
    • Video
    • Audio
    • Mobility
    • Unified Communications
    • IT Infrastructure
    • Network Security
    • Physical Security
    • Facility
    • Compliance
  • RFP Resources
  • Downloads
  • Podcasts
  • Subscribe
  • Project of the Week
  • Latest News
  • About Us
    SEARCH
Network Security, News

Nearly 30,000 Macs Infected With Mysterious Malware

Cybersecurity firm Red Canary says nearly 30,000 Mac computers have been infected with malware that has yet to deliver a payload.

February 23, 2021 Zachary Comeau Leave a Comment

Mac Malware

One of the big selling points of Macs over Windows PCs is the resistance to viruses and other malware,  but a new strain of malware found on 30,000 devices is calling that into question and stumping security experts.

Cybersecurity firm Red Canary, among others, has disclosed the existence of the malware on macOS that uses a LaunchAgent to establish a presence. However, the malware was unusual in that it didn’t behave like usual adware that targets Apple systems.

The malware runs natively on Apple’s new M1 chip and uses JavaScript for execution.

Red Canary, along with Malwarebytes and VMWare Carbon Black say the malware – Silver Sparrow – has infected 29,139 macOS endpoints across 153 countries as of last week. However, Silver Sparrow has not yet delivered additional malicious payloads, Red Canary said in a blog.

Though we haven’t observed Silver Sparrow delivering additional malicious payloads yet, its forward-looking M1 chip compatibility, global reach, relatively high infection rate, and operational maturity suggest Silver Sparrow is a reasonably serious threat, uniquely positioned to deliver a potentially impactful payload at a moment’s notice. Given these causes for concern, in the spirit of transparency, we wanted to share everything we know with the broader infosec industry sooner rather than later.

The company further said there appear to be two versions of Silver Sparrow, with only one major difference.

 The first version contained a Mach-O binary compiled for Intel x86_64 architecture only (updater MD5: c668003c9c5b1689ba47a431512b03cc). In the second version, the adversary included a Mach-O binary compiled for both Intel x86_64 and M1 ARM64 architectures (tasker MD5: b370191228fef82635e39a137be470af). This is significant because the M1 ARM64 architecture is young, and researchers have uncovered very few threats for the new platform.

MacRumos reported yesterday that Apple has revoked the certification of the developer accounts used to sign the packages, thus preventing additional Macs from being infected.

Related: Cybersecurity Training For End Users Needs To Evolve

Read Red Canary’s blog for more information, including indicators of compromise.

Tagged With: Cybersecurity, Mac, Malware

Related Content:

  • Google BeyondCorp Enterprise Google Releases Chrome Privacy, Security Fixes
  • Chris Krebs CISA fired, CISA Ransomware Campaign U.S. Agencies: Russian SolarWinds Hackers Leveraging Five Older…
  • Remote Work Productivity, tips for 2021, carbon emissions Will Continued Adoption of Remote Work Technologies Cut…
  • FBI Microsoft Exchange Server FBI Removes ‘Hundreds’ Of Web Shells From Compromised…

Free downloadable guide you may like:

  • These Are THE Key Issues For CIOs in 2021

    In this new research survey from The Hackett Group, it was found that IT priorities are geared up for an aggressive and accelerated transformation agenda. The IT department is poised to become a strategic partner with their business and guide stakeholders through a year of growth. This is the year of experimentation and adaption as […]

Reader Interactions

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Get the FREE Tech Decisions eNewsletter

Sign up Today!

Latest Downloads

Tackling the Virtual Culture Dilemma

COVID-19 has turned much of our lives upside down. At over one year into the pandemic, many of us are still working from home, which has been the b...

These Are THE Key Issues For CIOs in 2021

In this new research survey from The Hackett Group, it was found that IT priorities are geared up for an aggressive and accelerated transformation ...

These Are The 2021 Trends in Control Rooms And Operation Centers

Join Shelley Johnson, Principal Engineer at The MITRE Corporation, Shane Vega, National Business Development Manager at AVI-SPL, and Dan Griffin, V...

View All Downloads

Would you like your latest project featured on TechDecisions as Project of the Week?

Apply Today!
Sharp Microsoft Collaboration HQ Logo

Learn More About the
Windows Collaboration Display

More from Our Sister Publications

Get the latest news about AV integrators and Security installers from our sister publications:

Commercial IntegratorSecurity Sales

Footer

TechDecisions

  • Home
  • Welcome to TechDecisions
  • Subscribe to the Newsletter
  • Contact Us
  • Media Solutions & Advertising
  • Comment Guidelines
  • RSS Feeds
  • Terms of Use
  • Privacy Policy
  • Twitter
  • Facebook
  • Linkedin

Free Technology Guides

FREE Downloadable resources from TechDecisions provide timely insight into the issues that IT, A/V, and Security end-users, managers, and decision makers are facing in commercial, corporate, education, institutional, and other vertical markets

View all Guides
TD Project of the Week

Get your latest project featured on TechDecisions Project of the Week. Submit your work once and it will be eligible for all upcoming weeks.

Enter Today!

© 2021 Emerald X, LLC. All rights reserved.