
Researchers from security firm AiroAV have discovered a new malware that affects Apple MacOS devices and can be used by hackers to carry out man-in-the-middle attacks on these devices.
The malware essentially affects search engine results. It inserts results from the Bing search engine while the user searches for something on the Google.
This malware operates differently from other malware that has previously targeted Apple devices. Apple had managed to patch the security issues it faced with the release of MacOS Mojave last year.
The malware appears as a fake Adobe Flash plugin. It can be delivered to MacOS users via email. The installation process of the fake flash player seems almost normal to unsuspecting users.
A local proxy is then created on the infected machine, asking the user to provide their Apple username and password. Hackers can use the proxy to gain access to the system and make any changes they want.
The malware inserts search engine results and helps hackers make money by displaying ads.
Malware protection
Using reliable and up-to-date antivirus software is essential for protection against malware. Antivirus programs can detect and remove malicious software, as well as provide continuous real-time protection.
Next is using strong and unique passwords for each account. Passwords should include a combination of letters, numbers, and special characters to make them harder to crack.
Enabling multi-factor authentication (MFA) adds an extra layer of security. Even if someone gets your password, they'll still need the second factor to gain access.
See also: Check Point: Exploiting compiled V8 JavaScript by malware creators
Finally, it is also very important to avoid clicking on suspicious links and attachments in emails and messages. Attackers often use phishing emails to trick users into installing malware on their computers.
