Close Menu
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
What's Hot

Steel Power Unveiled: Is SteelPower Male Enhancement Formula Legit? Read Steel Power Supplement Report!

May 2, 2026

Seoul Court Rescues Bithumb from Record 6-Month Suspension

May 2, 2026

Bitdeer Sells All Mined BTC This Week: Zero-Holding Strategy Intensifies

May 2, 2026
Facebook X (Twitter) Instagram
Recession Profit AlertsRecession Profit Alerts
  • Instructions
  • News
    • DeFi
    • Smart Contract
    • Markets
    • Web3
    • Adoption
    • Memecoins
    • Analysis
    • Mining
    • Scams
    • Security
  • Education
    • Learn
    • Wallets & Exchange
  • Documentaries
  • Videos
    • Alessio Rastani
    • Altcoin Buzz
    • Coin Bureau
    • Dapp University
    • DataDash
    • Digital asset News
    • EllioTrades Crypto
    • MMCrypto
    • Lark Davis
    • Ivan on Tech
    • Benjamin Cowen
  • Market
    • Crypto Market Cap
    • Heat Map
    • Converter
    • Metal Prices
    • Stock prices
  • Bonus Books
  • Tools
Recession Profit AlertsRecession Profit Alerts
Home»Security»Lazarus Group Targets macOS in Supply Chain Assault
Lazarus Group Targets macOS in Supply Chain Assault
Security

Lazarus Group Targets macOS in Supply Chain Assault

September 23, 2023No Comments2 Mins Read

Cybersecurity firm ESET has detected a significant supply chain attack targeting macOS devices. The Lazarus Group, known for its advanced cyber operations, was reportedly behind this breach.

The attack, which began in March 2023, involved compromising the X_TRADER software and 3CX phone system apps, affecting unsuspecting users of both Windows and macOS platforms.

While macOS systems have historically been less vulnerable to malware compared to Windows devices, ESET’s telemetry data showed a notable rise in detections following this incident. Potentially Unwanted Applications (PUAs) accounted for nearly half of all macOS detections in the first half of 2023.

“The supply-chain attack’s impact is reflected in a 16.8% increase in Trojan detections, which accounted for 11.2% of all macOS detections during the same period,” ESET wrote in a press release shared with Infosecurity via email.

The company’s investigations also found that both Windows and macOS applications developed by 3CX contained malicious code. This compromised software build chain enabled the attackers to distribute a trojanized 3CX macOS application, identified as OSX/NukeSped.P.

“Further analysis revealed that the trojanised 3CX macOS application […] had been digitally signed in late January,” the cybersecurity experts wrote.

“However, ESET telemetry only detected the compromised application on February 14 2023, with a subsequent spike in detections recorded towards the end of March. The affected systems were primarily located in Germany, the United Kingdom, France, the United States and Canada.”

While the attack aimed to deliver additional malware to select 3CX customers, only a few cases were observed, primarily in France and Chile. This second-stage malware targeted cryptocurrency companies on both Windows and macOS platforms.

See also  Analyst Unveils Mysteries Within Binance and Hamas Terrorist Group

Read more on 3CX-focused attacks: 3CX Hackers Also Compromised Critical Infrastructure Firms

Notably, the 3CX supply chain attack stemmed from a prior supply chain attack on Trading Technologies’ X_TRADER software in 2022, indicating the evolving threat landscape and the need for enhanced cybersecurity measures across all platforms. 

This incident serves as a reminder that vigilance and security are essential defenses against evolving cyber-threats. More information about these attacks is available in the ESET Threat Report H1 2023.

Editorial image credit: Krisda / Shutterstock.com

Source link

Assault Chain Group Lazarus macOS Supply Targets

Related Posts

How North Korean spies spent months in-person to drain $285 million from Drift

May 2, 2026

Meteora reports $1.5 million OTC scam loss in Q1 MET report

May 2, 2026

ZachXBT Exposes US Law Firm Gerstein Harrow’s $71M Grab of Stolen Lazarus Funds

May 2, 2026

Crypto hack losses top $630M in April, highest since February 2025

May 2, 2026
Top Posts

Bitcoin surges past $71,000 during a record South Korean stock market crash of 18% this week

March 4, 2026

Luxor Launches ‘Commander’ Fleet Management Software to Optimize Bitcoin Mining Operations

April 2, 2026

DeFi projects hit by fresh wave of front-end attacks

February 17, 2026

Type above and press Enter to search. Press Esc to cancel.