Menu

📰
0

Minirat malware deployed via NPM targeting macOS machines

Reddit r/Malware·u/Few-Calligrapher2797·about 1 month ago
#N11HQWCo
#macos#minirat#based#access#endpoints#article
Reading 0:00
15s threshold

A newly analyzed Go-based macOS remote access trojan (RAT), internally named Minirat, has surfaced in the wild using anti-VM checks, LaunchAgent persistence, and AES-encrypted command and control (C2) configuration to maintain stealthy, long-term access on victim endpoints. According to SafeDep, the initial infection vector was a malicious npm package (velora-dex-sdk) that dropped the Go-based macOS RAT onto developer endpoints.

Read More