s2
--:--:--UTC

Searching APEX

Starting…

  1. Searching Threats, IOCs & Threat Intelligence locally
  2. Querying external providers
  3. Asking AI Forensic Validator
  4. Creating new entry from validated hit

0s elapsed

TF-MAL-osx.cloud_mensis

📛 Threat Title

Malware family: CloudMensis

Category: CloudMensis First seen: Last updated: Source: ThreatFox Malwares

Description

ThreatFox malware family `osx.cloud_mensis`. Printable name: CloudMensis. Aliases: BadRAT.

Indicators of Compromise (0)

No indicators of compromise on this threat.

References (1)

Remediations (10)

  • web:cybersecurityasia.net

    CloudMensis is a threat to Mac users, but its very limited distribution suggests that it is used as part of a targeted operation. From what ESET Research has seen, operators of this malware family deploy CloudMensis to specific targets that are of interest to them. The use of vulnerabilities to work around macOS mitigations shows that the malware operators are actively trying to maximise the ...

  • web:malwaretips.com

    This guide teaches you how to remove the CloudMensis browser hijacker by following easy step-by-step instructions.

  • web:thehackernews.com

    Windows versions of BirdCall, dubbed an advanced evolution of RokRAT, have been detected in the wild since 2021. Over the years, RokRAT has also been adapted to target macOS ( CloudMensis ) and Android (RambleOn), indicating that the malware family continues to be actively maintained by the threat actors.

  • web:tria.ge

    Malware , tools, or other non-native files dropped or created on a system by an adversary (ex: Ingress Tool Transfer) may leave traces to indicate to what was done within a network and how. Removal of these files can occur.defense_evasion Path Permission

  • web:version-2.com

    CloudMensis is a threat to Mac users, but its very limited distribution suggests that it is used as part of a targeted operation. From what ESET Research has seen, operators of this malware family deploy CloudMensis to specific targets that are of interest to them. The use of vulnerabilities to work around macOS mitigations shows that the malware operators are actively trying to maximize the ...

  • web:vpnoverview.com

    A menacing form of new malware dubbed CloudMensis by ESET cybersecurity researchers is making the rounds and exfiltrating Mac users' data.

  • web:www.eset.com

    CloudMensis is a threat to Mac users, but its very limited distribution suggests that it is used as part of a targeted operation. From what ESET Research has seen, operators of this malware family deploy CloudMensis to specific targets that are of interest to them.

  • web:www.ncnonline.net

    CloudMensis is a threat to Mac users, but its very limited distribution suggests that it is used as part of a targeted operation. From what ESET Research has seen, operators of this malware family deploy CloudMensis to specific targets that are of interest to them. The use of vulnerabilities to work around macOS mitigations shows that the malware operators are actively trying to maximise the ...

  • web:www.pcrisk.com

    What kind of malware is CloudMensis ? While analyzing the samples submitted to the VirusTotal page, our team discovered spyware targeting macOS users called CloudMensis . It was found that CloudMensis is written in Objective-C programming language. It can exfiltrate documents and email attachments, capture the screen, log keystrokes, and steal other sensitive data. More about the CloudMensis ...

  • web:www.redpacketsecurity.com

    The malware was designed to spy on the target systems, exfiltrate documents, acquire keystrokes, and screen captures. CloudMensis was developed in Objective-C, the samples analyzed by ESET are compiled for both Intel and Apple architectures. Experts have yet to determine how the victims are initially compromised by this spyware.

AI Forensic Analysis

Only Available for Registered Users. Sign in to view.