Close Menu
Pineapples Update –Pineapples Update –

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    I tried the only agentive browser that runs native AI – and found only one downside

    November 7, 2025

    Get 4 Free iPhone 17 or Galaxy S25 Phones from T-Mobile Right Now – Here’s How

    November 7, 2025

    She has 3 secrets to doubling the revenue of your mom’s business

    November 7, 2025
    Facebook X (Twitter) Instagram
    Facebook X (Twitter) Instagram Pinterest Vimeo
    Pineapples Update –Pineapples Update –
    • Home
    • Gaming
    • Gadgets
    • Startups
    • Security
    • How-To
    • AI/ML
    • Apps
    • Web3
    Pineapples Update –Pineapples Update –
    Home»Security»Microsoft warns of Xcode Devs targeting new Xcsset Macos Malware Variant
    Security

    Microsoft warns of Xcode Devs targeting new Xcsset Macos Malware Variant

    PineapplesUpdateBy PineapplesUpdateSeptember 26, 2025No Comments2 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
    Microsoft warns of Xcode Devs targeting new Xcsset Macos Malware Variant
    Share
    Facebook Twitter LinkedIn Pinterest Email

    Microsoft warns of Xcode Devs targeting new Xcsset Macos Malware Variant

    Microsoft Danger Intelligence reports that a new version of XCSSET MACOS malware has been found in limited attacks, including many new features, including extended browser targeting, clipboard kidnapping, and better focus mechanisms.

    XCSSET is a modular macos malware that serves as an infostealer and cryptocurrency steeler, stolen notes, cryptocurrency wallets and browser data from infected devices. The malware spreads by discovering and infecting the other Xcode projects found on the device, so that the malware is executed during the construction of the project.

    “XCSSET malware is designed to infect Xcode projects, which are usually used by software developers, and a Xcode project being created.”

    “We assess that this method of infection and dissemination banks on project files is being shared among developers of apple or MACOS-related applications.”

    In a new version viewed by Microsoft, researchers have noted many changes.

    It now tries to steal firefox browser data by installing the modified build of open-source Hackbrocedata The tool, which is used to decry and export browser data from the browser data store.

    The new version also includes a clipboard-hijacking component update that monitors the MACOS clipboard for regular expression patterns associated with the cryptocurrency address.

    When a crypto address is detected, it will replace the address with one related to the attacker. This causes any cryptocurrency to be sent to the attackers to the user infected by the user.

    The attacker's cryptocurrency addresses used with clipboard kidnappers
    The attacker’s cryptocurrency addresses used with clipboard kidnappers
    Source: Microsoft

    Malware also includes new firm ways, such as making launchdon entries that execute a ~ /.root payload and create a fake system settings in TMP to mascar their activity.

    The new version is not yet widespread, and Microsoft reports that it has only seen it in limited attacks. Researchers have also shared their findings with Apple and are working with GITHUB to remove the respective repository.

    To protect from this type of malware, it is recommended to keep the MacoS and apps up to date, especially the weaknesses including zero-din have been exploited before considering XCSSET.

    Microsoft also recommends that developers always observe Xcode projects before making them, especially when they are shared by others.


    Picus Blue Report 2025

    The passwords broke in 46% of the atmosphere, almost doubled by 25% last year.

    Picus Blue Report 2025 Now get a wider look at more conclusions on prevention, detection and data exfIs.

    Devs Macos Malware Microsoft targeting variant warns Xcode Xcsset
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Previous ArticleOnly 11% of business leaders see AI leading to major job cuts – for now
    Next Article Startup founders say that Trump’s $ 100K H-1B duty is a ‘talent tariff’ that will damage innovation
    PineapplesUpdate
    • Website

    Related Posts

    Startups

    AI is becoming introspective – and should be ‘carefully monitored,’ Anthropic warns

    November 3, 2025
    Startups

    Microsoft Said My PC Can’t Run Windows 11, But I Still Upgraded in 5 Minutes – Here’s How

    October 30, 2025
    AI/ML

    OpenAI has an AGI problem – and Microsoft made it worse

    October 29, 2025
    Add A Comment
    Leave A Reply Cancel Reply

    Top Posts

    Microsoft’s new text editor is a VIM and Nano option

    May 19, 2025797 Views

    The best luxury car for buyers for the first time in 2025

    May 19, 2025724 Views

    Massives Datenleck in Cloud-Spichenn | CSO online

    May 19, 2025650 Views
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    10,000 steps or Japanese walk? We ask experts if you should walk ahead or fast

    June 16, 20250 Views

    FIFA Club World Cup Soccer: Stream Palmirus vs. Porto lives from anywhere

    June 16, 20250 Views

    What do chatbott is careful about punctuation? I tested it with chat, Gemini and Cloud

    June 16, 20250 Views
    Our Picks

    I tried the only agentive browser that runs native AI – and found only one downside

    November 7, 2025

    Get 4 Free iPhone 17 or Galaxy S25 Phones from T-Mobile Right Now – Here’s How

    November 7, 2025

    She has 3 secrets to doubling the revenue of your mom’s business

    November 7, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook X (Twitter) Instagram Pinterest
    • About Us
    • Contact Us
    • Privacy Policy
    • Terms And Conditions
    • Disclaimer
    © 2025 PineapplesUpdate. Designed by Pro.

    Type above and press Enter to search. Press Esc to cancel.