
MacSync Stealer Uses Stable URI Patterns and Chunked HTTP PUT Across Rotating C2 Domains
MacSync Stealer is a macOS-focused information stealer that uses rapidly changing command-and-control (C2) domains to deliver payloads, communicate with infected devices, and steal data. However, a Microsoft Defender Experts investigation found that the malware keeps several network and execution patterns stable, giving defenders reliable ways to detect activity even after domains change. Earlier research from […]
The post MacSync Stealer Uses Stable URI Patterns and Chunked HTTP PUT Across Rotating C2 Domains appeared first on Cyber Security News.