Advertisement
Top
image credit: Pixabay

Lazarus Subgroup Targeting Apple Devices with New RustBucket macOS Malware

April 25, 2023

A financially-motivated North Korean threat actor is suspected to be behind a new Apple macOS malware strain called RustBucket.

“[RustBucket] communicates with command and control (C2) servers to download and execute various payloads,” Jamf Threat Labs researchers Ferdous Saljooki and Jaron Bradley said in a technical report published last week.

The Apple device management company attributed it to a threat actor known as BlueNoroff, a subgroup within the infamous Lazarus cluster that’s also tracked under the monikers APT28, Nickel Gladstone, Sapphire Sleet, Stardust Chollima, and TA444.

Read More on The Hacker News