URL has been copied successfully!
PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence
URL has been copied successfully!

Collecting Cyber-News from over 60 sources

PamStealer macOS Malware Adds Live C2 Payload Decryption and Multi-Layer Persistence

Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain.The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method.”Where earlier variants embedded their payload key material

First seen on thehackernews.com

Jump to article: thehackernews.com/2026/09/pamstealer-macos-malware-adds-live-c2.html

Loading

Share via Email
Share on Facebook
Tweet on X (Twitter)
Share on Whatsapp
Share on LinkedIn
Share on Xing
Copy link