Infection Report

DNSChanger and Jahlav distribution vector provided an avenue for attackers to successfully trick Mac users into installing it. The social engineering technique deployed is closely knitted to internet users’ popular activity which is called the “Mainstream Approach” – which makes simple tricks sophisticated and unrecognizable from an average internet user.
I have mapped the top five “internet mainstream” activities that became a hub that provides opportunity for organized group to plug-in and deploy cybercrimes.

It’s been weeks (almost a month) that Mac trojan internet distribution are offline. Because of this, I can’t help to ask myself:
- Is it preparing for new attack?
- Is it over, the fact that Apple stepped-in?
- Just cooling off waiting for demand to kick in?
For whatever reason, I don’t know. For now, it’s good that Mac users are safe from these pest. For threat research community, let’s wait and see!




Recent Comments