Apple Users Open to Remote Control via Tricky macOS Malware

Share:

The Hidden Virtual Network Computing (hVNC) malware infests Macs and silently executes complete takeovers, with no user permission needed. It also sports persistence through reboots.

Recently discovered data-stealing malware is targeting macOS users with a sneaky approach that uses Hidden Virtual Network Computing (hVNC). It’s being sold at a lifetime price of $60,000 on the Dark Web, with add-ons available.

Virtual Network Computing (VNC) software is typically used by IT teams to provide remote technical support to users. A doppelgänger version of the tool is hVNC, which can be bundled into malware that operates covertly, gaining access without requesting permission from the user.

According to Guardz researchers, a macOS version of such a tool has emerged on Exploit, the infamous Russian underground forum. It specializes in bagging all manner of sensitive information, including login credentials, personal data, financial information, and more. Concerningly for Apple users, the malware can also survive system reboots and other attempts at removal.

“The macOS hVNC identified by Guardz has been available since April, with updates made as recently as July 13, and was tested on a wide array of macOS versions from 10 through 13.2, on offer from an active Exploit forum member called RastaFarEye,” the firm noted in an analysis on Aug. 1. “The forum member holds a significant track record of malicious activity, having already developed a Windows OS hVNC variant, among other attack tools.”

The discovery follows the emergence of the ShadowVault malware in July, which also exclusively targets macOS devices.

“The growing talk of macOS tools within underground cybercrime forums, suggests an imminent surge in cyberattacks against macOS users,” said Dor Eisner, CEO and co-founder of Guardz, in a media statement. “Small and medium-sized enterprises, who once considered macOS as the safer option, should exercise caution and prepare themselves for the impacts of this changing threat landscape.”

 

(c) Dark Reading

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
10:11 am, Jun 1, 2025
weather icon 16°C
L: 16° | H: 17°
scattered clouds
Humidity: 60 %
Pressure: 1014 mb
Wind: 11 mph WSW
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 40%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:49 am
Sunset: 9:07 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
16° | 17°°C 0 mm 0% 14 mph 70 % 1014 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
11° | 21°°C 0 mm 0% 10 mph 82 % 1019 mb 0 mm/h
Tue Jun 03 10:00 pm
weather icon
11° | 17°°C 1 mm 100% 16 mph 92 % 1013 mb 0 mm/h
Wed Jun 04 10:00 pm
weather icon
9° | 19°°C 0 mm 0% 13 mph 83 % 1010 mb 0 mm/h
Thu Jun 05 10:00 pm
weather icon
11° | 15°°C 1 mm 100% 13 mph 97 % 1009 mb 0 mm/h
Today 1:00 pm
weather icon
17° | 17°°C 0 mm 0% 12 mph 55 % 1014 mb 0 mm/h
Today 4:00 pm
weather icon
16° | 16°°C 0 mm 0% 14 mph 44 % 1013 mb 0 mm/h
Today 7:00 pm
weather icon
15° | 15°°C 0 mm 0% 12 mph 51 % 1013 mb 0 mm/h
Today 10:00 pm
weather icon
16° | 16°°C 0 mm 0% 9 mph 70 % 1014 mb 0 mm/h
Tomorrow 1:00 am
weather icon
13° | 13°°C 0 mm 0% 7 mph 82 % 1016 mb 0 mm/h
Tomorrow 4:00 am
weather icon
11° | 11°°C 0 mm 0% 6 mph 78 % 1017 mb 0 mm/h
Tomorrow 7:00 am
weather icon
12° | 12°°C 0 mm 0% 9 mph 72 % 1018 mb 0 mm/h
Tomorrow 10:00 am
weather icon
16° | 16°°C 0 mm 0% 8 mph 48 % 1019 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€91,969.73
0.66%
Ethereum(ETH)
€2,208.70
-0.79%
Tether(USDT)
€0.88
0.01%
XRP(XRP)
€1.89
0.55%
Solana(SOL)
€135.14
-1.08%
USDC(USDC)
€0.88
0.00%
Dogecoin(DOGE)
€0.166872
0.15%
Shiba Inu(SHIB)
€0.000011
1.63%
Pepe(PEPE)
€0.000011
2.01%
Peanut the Squirrel(PNUT)
€0.228170
1.82%
Scroll to Top