Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
  • AI
  • Tech
  • Cybersecurity
  • Finance
  • DeFi & Blockchain
  • Startups
  • Gaming
Dataconomy
  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
  • AI toolsNEW
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
Subscribe
No Result
View All Result
Dataconomy
No Result
View All Result

ChillyHell malware continues targeting Mac users with advanced evasion tactics

Advanced evasion tactics keep the 2021 malware active despite Apple revoking developer certificates.

byEmre Çıtak
September 11, 2025
in Cybersecurity
Home News Cybersecurity
Share on FacebookShare on TwitterShare on LinkedInShare on WhatsAppShare on e-mail

A new report from Jamf Threat Labs reveals that ChillyHell malware remains active against macOS systems. First discovered in 2021 and privately reported by cybersecurity firm Mandiant in 2023, this persistent threat shows no signs of stopping. Jamf researchers found a fresh sample on VirusTotal in May 2024, confirming the malware’s continued operation.

How ChillyHell steals Mac user data

ChillyHell targets sensitive information on infected Mac computers, specifically focusing on usernames and passwords. The malware uses sophisticated methods to avoid detection by security software and researchers.

Advanced evasion techniques make detection difficult

The malware employs two key tactics to stay hidden:

Stay Ahead of the Curve!

Don't miss out on the latest insights, trends, and analysis in the world of data, technology, and startups. Subscribe to our newsletter and get exclusive content delivered straight to your inbox.

  • Timestomping – alters file creation and modification dates to hide malicious activity
  • Dynamic command-and-control protocol switching – changes communication methods to avoid network monitoring

These evasion techniques allow ChillyHell to operate undetected for extended periods, making tracking and removal challenging for security teams.

Developer certificate revocation limits future distribution

Jamf’s investigation found that Apple has revoked the developer certificates linked to ChillyHell. This revocation prevents new versions from being easily distributed but does not remove existing infections from compromised systems.

Mac users should maintain updated security software and exercise caution when downloading applications from untrusted sources. The ChillyHell campaign demonstrates that macOS remains a target for sophisticated malware operations.


Featured image credit

Tags: ChillyHell malware

Related Posts

AWS outage disrupts Fortnite and Steam

AWS outage disrupts Fortnite and Steam

December 25, 2025
Aflac data breach affected 22.65M customers

Aflac data breach affected 22.65M customers

December 24, 2025
Nissan data breach is real and you might be affected

Nissan data breach is real and you might be affected

December 23, 2025
Spotify data breach: 86 million audio files leaked online

Spotify data breach: 86 million audio files leaked online

December 22, 2025
Google-featured VPN extension harvested and sold ChatGPT and Claude conversations

Google-featured VPN extension harvested and sold ChatGPT and Claude conversations

December 19, 2025
Cisco tells customers to wipe and rebuild hacked appliances

Cisco tells customers to wipe and rebuild hacked appliances

December 18, 2025

LATEST NEWS

DeepSeek introduces Manifold-Constrained Hyper-Connections for R2

Intel unveils Core Ultra Series 3 on 18A at CES 2026

CES 2026: Everything AMD revealed at the show

Narwal unveils Flow 2 with AI pet and object monitoring at CES 2026

Teradar unveils Summit terahertz sensor at CES 2026

Google brings Gemini AI to the living room at CES 2026

Dataconomy

COPYRIGHT © DATACONOMY MEDIA GMBH, ALL RIGHTS RESERVED.

  • About
  • Imprint
  • Contact
  • Legal & Privacy

Follow Us

  • News
    • Artificial Intelligence
    • Cybersecurity
    • DeFi & Blockchain
    • Finance
    • Gaming
    • Startups
    • Tech
  • Industry
  • Research
  • Resources
    • Articles
    • Guides
    • Case Studies
    • Whitepapers
  • AI tools
  • Newsletter
  • + More
    • Glossary
    • Conversations
    • Events
    • About
      • About
      • Contact
      • Imprint
      • Legal & Privacy
      • Partner With Us
No Result
View All Result
Subscribe

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy Policy.