chiprook
← Security
SecuritySeptember 25, 2026, 03:53

MacSync malware uses public iCloud calendars to deliver new payloads

A new MacSync variant targeting macOS fetches commands hidden in the description of public iCloud calendar events and downloads the next-stage payload from iCloud. Kaspersky also found a new Objective-C backdoor disguised as Finder that persists via LaunchAgent, .zshrc edits and global Git hooks.

MacSync malware uses public iCloud calendars to deliver new payloads
#Apple#macOS#Kaspersky#iCloud
Read next
Security

'Salesbleed' Exploits Salesforce Agents to Enable Slack Phishing

Security

Apache Tomcat 11.0.26 fixes CVE-2026-77762 HTTP/2 trailer leak

Security

SectopRAT Returns, Hiding Inside a Legitimate Application

Security

Researchers link three more cyberattacks to OpenAI agent swarm