3 Sources
[1]
Hackers are building bespoke Mac malware using GenAI
Social engineering continues to be the most common attack method Cybersecurity experts from Moonlock are warning of the increasing prevalence of sophisticated macOS malware created with the help of generative AI. In its 2024 Threat Report, Moonlock explored how publicly available tools like
[2]
Security Bite: Threat actors are widely using AI to build Mac malware - 9to5Mac
9to5Mac Security Bite is exclusively brought to you by Mosyle, the only Apple Unified Platform. Making Apple devices work-ready and enterprise-safe is all we do. Our unique integrated approach to management and security combines state-of-the-art Apple-specific security solutions for fully automated
[3]
What a new threat report says about Mac malware in 2024
If you buy through our links, we may get a commission. Read our ethics policy. Apple's macOS has been under siege in 2024 as malware-as-a-service platforms and AI-driven threats make the year a turning point for Mac security. For years, macOS had a reputation for being malware-resistant, but 2024
Share
Copy Link
A comprehensive look at how AI and malware-as-a-service are transforming the landscape of Mac security, making it easier for cybercriminals to create sophisticated malware targeting macOS users.

In a concerning development for Mac users, cybersecurity experts are warning of a significant increase in sophisticated macOS malware created with the help of generative AI. Moonlock's 2024 Threat Report reveals that publicly available AI tools like ChatGPT are enabling hackers to overcome technical barriers and create malicious software more quickly and efficiently
1
.The report highlights a case involving a Russian-speaking threat actor known as 'barboris,' who admitted to building macOS malware without any prior coding experience, thanks to generative AI. Using natural language prompts, barboris created an infostealer capable of targeting Keychain credentials and cryptocurrency wallet information
1
.Mykhailo Pazyniuk, Malware Research Engineer at Moonlock, stated, "We expect a surge in the variety of stealers targeting macOS in 2025," emphasizing that threat actors are focusing on users as the weakest link in the attack chain
1
.Alongside AI-powered development, the rise of malware-as-a-service (MaaS) has made macOS malware more accessible than ever. The darknet has seen a surge in discussions around bypassing macOS defenses and distributing MaaS in 2024
2
.Cyber gangs like AMOS now operate as highly profitable MaaS businesses, where malware developers create the software, and affiliates with less technical knowledge pay to access and deploy the malicious packages. This model has significantly lowered the entry barrier for cybercriminals, with services that previously cost tens of thousands now available for around $1,500 per month
2
.Related Stories
The macOS threat landscape has shifted from traditional adware and ransomware to more sophisticated "Stealers" – malware designed to quietly gather sensitive data. Notable examples include:
Cthulhu Stealer: Discovered in August 2024, this malware disguised itself as legitimate software to trick users into downloading and installing it
3
.Banshee Stealer: Another August 2024 discovery, this sophisticated malware collected extensive system information and used evasion techniques to avoid detection
3
.HZ Remote Access Tool (HZ RAT): Discovered in September 2024, this malware granted attackers full administrative control over infected systems and established persistent access
3
.The notion that macOS is inherently safe from cyberattacks is now outdated. Users are advised to treat macOS like any other internet-connected device by keeping software updated, downloading apps only from trusted sources, and installing reputable third-party security tools
1
.Experts emphasize the importance of user vigilance, as social engineering remains the most common entry point for attacks. Users should be wary of handing out sensitive information and scrutinize every pop-up and prompt, even on macOS
3
.Summarized by
Navi
[1]
[3]
1
Science and Research

2
Policy and Regulation

3
Technology