CyberWire Daily cover image

CyberWire Daily

NotLockBit takes a bite out of macOS.

Oct 23, 2024
Jérôme Segura, Sr. Director of Research at Malwarebytes, shares insights on the alarming rise of NotLockBit, a new macOS malware mimicking LockBit tactics. He discusses how scammers are exploiting platforms like GitHub to advertise fake AppleCare+ services, highlighting vulnerabilities associated with mobile apps. The conversation sheds light on the accountability of tech firms in the face of increased privacy violations and examines the federal government’s push for better information sharing in cybersecurity. It's a must-listen for anyone concerned about modern digital threats!
37:02

Episode guests

Podcast summary created with Snipd AI

Quick takeaways

  • The emergence of NotLockbit ransomware targeting macOS exemplifies the growing threat landscape as attackers leverage advanced tactics for data exfiltration.
  • Recent vulnerabilities in popular mobile apps highlight the urgent need for developers to prioritize secure coding practices to prevent unauthorized data access.

Deep dives

Emerging Threats: NotLockbit Ransomware

A new macOS malware called NotLockbit has emerged, mimicking the infamous Lockbit ransomware while targeting both Windows and macOS. This ransomware employs standard tactics such as data theft and file encryption, ensuring only the attacker can decrypt the files using RSA encryption. NotLockbit also utilizes hard-coded AWS credentials for data exfiltration, sending victim data to an Amazon S3 bucket. Researchers warn that this malware is still actively being developed, indicating the potential for future threats from this adversary.

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode