New Banshee Stealer Variant Bypasses Antivirus with Apple’s XProtect-Inspired Encryption

New Banshee Stealer Variant Bypasses Antivirus with Apple’s XProtect-Inspired Encryption
Summary: A new variant of the macOS-focused Banshee Stealer malware has emerged, utilizing advanced encryption techniques to evade detection and posing a significant threat to macOS users worldwide. This iteration, which has been detected since late September 2024, is distributed through phishing websites and fake software repositories.

Threat Actor: Cybercriminals | Banshee Stealer
Victim: macOS Users | macOS Users

Key Point :

  • New Banshee Stealer variant employs advanced string encryption to bypass antivirus systems.
  • Malware is distributed via phishing websites and fake GitHub repositories masquerading as popular software.
  • Removal of Russian language checks indicates an expanded target range for the malware.
  • Cybercriminals are leveraging social engineering tactics to exploit human vulnerabilities.
  • Unsolicited messages on Discord are being used to spread various stealer malware families.

Source: https://thehackernews.com/2025/01/new-banshee-stealer-variant-bypasses.html