Hack On macOS Allows Attackers To Take Screenshots

Hackers have exploited a weakness in updated versions of macOS that allowed them to take screenshots on infected Macs without obtaining victims’ permission.

The zero-day was exploited by XCSSET, a malware discovered last August by TrendMicro, a security firm.

XCSSET used two zero-days to infect Mac developers with malware that stole browser files and cookies.

The malware also injected backdoors into websites, stole data from Skype and other apps, took screenshots, and encrypted files.

The infections came in the form of a malicious project that the hacker wrote for Xcode.

Xcode is a tool that Apple makes available to developers who write apps for macOS or other Apple operating systems.

Once an XCSSET project was opened and built, the malicious code ran on the user’s Mac, according to TrendMicro.

It is unlikely that XCSSET will infect Macs unless it has carried out a malicious Xcode project.

The majority of users should not worry unless they are developers who have used one of the projects.

For more information, read the original story in arstechnica.

Top Stories

Related Articles

May 31, 2025 A coordinated supply chain attack has compromised between 500 and 1,000 e-commerce websites by exploiting vulnerabilities in 21 more...

May 31, 2025 A widely used open-source Go library, easyjson, used in healthcare, finance and even defence has come under scrutiny more...

May 31, 2025 (EDITORIAL) A messaging tool used by Trump administration officials to archive encrypted Signal messages has been hacked — more...

April 22, 2025 Anthropic, a leading artificial intelligence company, anticipates that AI-powered virtual employees could begin operating within corporate networks as more...

Jim Love

Jim Is and author and pud cast host with over 40 years in technology.