XCSSET v40 Abuses Chrome DevTools Protocol to Steal Cookies and Run Commands

XCSSET has returned with a way to target macOS developers. The latest version, v40, hides inside poisoned Xcode projects and can turn a local build into a supply-chain compromise. Once activated, it can spread through other projects, raising risk for developers and the organizations that use their code. The malware family was first documented in […]

This article has been indexed from Cyber Security News

Read the original article: