macOS "Silver Sparrow" malware

TunPluTunPlu Posts: 1 New Member

Does anyone know if the most current Mac version of the software can identify the so-called "Silver Sparrow" Mac malware?

Answers

  • LucaseuropaLucaseuropa Posts: 87 Moderator

    Hello @TunPlu ,


    It seems that few days ago Red Canary discovered a new macOS malware called Silver Sparrow that uses the Javascript API in the macOS installer to execute commands. This malware can attack Intel Macs and those based on Apple M1, the ARM architecture.


    Currently, Silver Sparrow has not been observed to do anything undesirable - the binaries in it, when run, depending on the version (there are two), display a window saying "Hello World!" or "You did it!", so it looks like a proof of concept - but it was found for nearly 30,000 Macs in 153 countries, mainly in the US, UK, Canada, France and Germany, indicating that the rates of infection are much higher. Silver Sparrow uses AWS and Akamai's CDN, making it difficult to block.


    An Apple employee has unofficially announced that the responsible developer certifications have been revoked and that there is currently no evidence that Silver Sparrow is malfunctioning.

    Cheers,

    Lucas

    Sethu
Sign In or Register to comment.