New: Cymulate Cowork for Agentic Cyber Defense Engineering
Learn More
New Bitsight Integration: Turn Threat Intelligence into Validated Security
Learn More
Introducing Cymulate Vero AI for Agentic Cyber Defense Engineering
Learn More
New Case Study: How a Financial Authority Validates Cyber Resilience
Learn More

macOS Targeted With The CloudMensis Multi-Staged Malware

August 3, 2022

The CloudMensis multi-staged malware consist of a downloader used to infect MacOS systems with a spyware component used to exfiltrate sensitive information. The malicious software is capable of listing running processes, files, and emails as well as log keystrokes, take screenshots, run shell commands, and download additional files. The malware also exploits a vulnerability (CVE-2020-9934) to bypass the TCC daemon on any version of macOS Catalina earlier than 10.15.6.