News

XCSSET was first discovered by Trend Micro in 2020 targeting Apple developers, specifically their Xcode projects that they use to code and build apps.
The XCSSET malware was first spotted by Trend Micro last year [PDF] in a campaign targeting Mac users via infected Xcode projects, using two other zero-days to hijack the Safari web browser and ...
In 2020, malware called XCSSET made an appearance using two 0-day exploits to target Xcode developers and their projects. It would primarily spread using these projects, some of which were shared ...
macOS 11.4 patches flaws exploited by XCSSET malware XCSSET exploited a security flaw to take undetected screenshots, but the new Mac update ends the threat. By Anders Lundberg ...
The XCSSET malware family has been found in Xcode projects, "lead [ing] to a rabbit hole of malicious payloads," Trend Micro said on Thursday. In a paper (.PDF) exploring the wave of attacks ...
XCSSET could allow attackers to inject malicious JavaScript code into websites, track Safari browser activity by dumping cookies, and steal sensitive information from Apple Notes, Telegram, Skype ...
Recently, it was discovered that the Apple zero-day vulnerability resides in the 11.3 version of the Big Sur, leading to the XCSSET malware.
Microsoft Threat Intelligence warned about a new variant of modular macOS malware called XCSSET that infects Xcode projects Published - February 19, 2025 11:47 am IST ...