Beware New RustBucket Malware Variant Targeting macOS Users


According to a paper released this week by Elastic Security Labs researchers, “this variant of RustBucket, a malware family that targets macOS systems, adds persistence capabilities not previously observed,” and it also “leverages a dynamic network infrastructure methodology for command-and-control.”

The creator of RustBucket is a North Korean threat actor by the name of BlueNoroff. Lazarus Group, an elite hacking group under the control of the Reconnaissance General Bureau (RGB), the country’s main intelligence organisation, is tracking this threat actor as part of a broader incursion set.

