ChillyHell malware continues to go undetected on macOS, according to Jamf


Jamf Threat Labs has published a new report on Mac Malware. Nicknamed Chillyhell, malware was discovered for the first time in 2021 and reported privately by the mandating cybersecurity company in 2023. Last May, Jamf spotted a new Chillyhell sample on Virustotal, a website used to analyze suspect files and URLs, indicating a new activity for Malin.
On an infected Mac, Chillyhell can collect information such as user names and passwords. What makes Chillyhell unique is that he can perform horodatages (the possibility of modifying his horodatages on his files) and changing the C2 protocols he uses, all in an effort to avoid detection.
According to the JAMF report, developer certificates associated with Chillyhell have been dismissed. This does not mean that Chillyhell is no longer available in the wild, but efforts to develop it has been hampered.
How to protect yourself from malware
The easiest way to protect yourself from malware is to avoid downloading software from benchmarks such as Github and other download sites. Apple has checked software in the Mac App Store, and it is the safest way to get applications. If you prefer not to frequent the Mac App Store, buy software directly from the developer and their website. If you emphasize the use of Cracked software, you will always risk exposure to malware.
Never open the links in emails or SMS that you receive from unknown and unexpected sources. If you receive a message that seems to come from an entity with which you do business, see the sender’s email address and carefully inspect the URL. If you see a link or button, you can control it, select the Liaison address Copy, then paste it in a text editor to see the real URL to check it.
Macworld has several guides to help, including a guide on the question of knowing if you need antivirus software, a list of Mac virus, malware and Trojan horses, and a comparison of Mac security software.
Apple has protections in place in MacOS and the company publishes security fixes via updates to the operating system, so it is important to install them when available. If Apple takes up an update, the company will reissue it as soon as it is correctly revised with corrections.


