BlackHole for MAC

Marco Ramilli
Date
1 March 2011
Read
Share
Hi Folks,
today I am going to write a little bit about the "new" RAT (Remote Access Trojan) called BlackHole available for Windows and for MAC. In the past few days a lot of news papers and more generally speaking a lot of news portals (pcworld, sophos on security, the register and many others ) focused on the so called "new entry": the BlackHole RAT.

As the previous picture suggests (it's the main screen of BlackHole) it's nothing really new, it's just another RAT, like NetBus was or many versions of BackOrifice and like many other are and have been. Is it new because it has been made for MAC ? Well I see nothing new on that: the following picture shows just another RAT for MAC available in the underground communities.


(note on that: this is an "undetecter" that uses my AVFucker, but it has RAT capabilities too )


(only a small piece, the author wont be reachable...)

Well, of course these are only one of the many available .. .. .. Boys, at the end of the day they are "simple" trojan which in most of the cases do not exploit any vulnerability but only implements regular operation as a normal server does. For example BlackHole for MAC asks you to insert the root password before being installed.... :O! very dangerous 😀 😀 ... Again , uninformed people who falling into Social-Engineering traps open these malicious programs will have hard life if affected from a RAT, but informed people or people who do not often fall in social engineering traps will have easier life.. I mean it is always the "same soup" (an ancient way to say it is always the same old story) nothing new nothing old, I do not only figure why in these past few days a lot of famous, authoritative online (and non) magazines, which I respect and read, have been focused on this particular topic describing a new "MAC threat" when, instead, it is not a new MAC threat at all ;).

Please do not misinterpret my words, I definitely love pcworld, sophos on security, the register and all the others :D.
Marco Ramilli
Date
1 March 2011
Read
Share
← Go back
Latest Posts

i-SOON Data Leak: Key Points

Introduction i-SOON (上海安洵), a prominent contractor for various Chinese government agencies such […]

Date
26.02.2024
Duration
5 min
Text
Marco Ramilli

X Gold Badges: a new proliferating market

When I saw a threat actor hijacking the X account of Google's […]

Date
08.01.2024
Duration
5 min
Text
Marco Ramilli

Technical Data Sheet: LOCKBIT 3.0

LOCKBIT 3.0 is a notorious Ransomware Group that was first identified on […]

Date
20.12.2023
Duration
5 min
Text
Marco Ramilli
1 2 3 236
Back to Top
magnifier