
New macOS Malware CrashStealer Discovered Using Native C++ and Notarized Dropper
CybersecurityMalwaremacOSDataTheft
Cybersecurity researchers at Jamf Threat Labs identified a new macOS information stealer named CrashStealer, designed to exfiltrate sensitive data from infected systems. Unlike typical macOS malware, CrashStealer is implemented in native C++ rather than AppleScript or Objective-C-based wrappers. The malware employs a notarized dropper to bypass Gatekeeper security checks on macOS. It locally validates the victim’s login password before executing further malicious activities. No specific dates, CVE IDs, or victim counts were disclosed in the reported findings.