Zero-day exploited in the wild to deploy malware

Zero-day exploited in the wild to deploy malware

3 years ago
Anonymous $4BDEsVAtYS

https://www.bleepingcomputer.com/news/security/apple-fixes-macos-zero-day-bug-exploited-by-shlayer-malware/

Apple has fixed a zero-day vulnerability in macOS exploited in the wild by Shlayer malware to bypass Apple's File Quarantine, Gatekeeper, and Notarization security checks and download second-stage malicious payloads.

Shlayer's creators have managed to get their malicious payloads through Apple's automated notarizing process before.