
Loading

Loading
We use strictly necessary cookies to run this site, and analytics cookies to understand how it's used. See our Privacy Policy for details.

Cybersecurity researchers have flagged a new version of PamStealer that ensures that the main payload can only be recovered using a server-side decryption chain.
Summary
The latest artifacts, per Jamf Threat Labs, continue to rely on the same JavaScript for Automation (JXA) dropper mechanism, but modify the lure and the delivery method.
This is a brief wire summary — the full story (linked below) has the complete details.
KazaSec's take
Stories like this are part of why proactive security testing exists — finding the gap before someone else does is always cheaper than responding after the fact.
Coverage details
Relevant from KazaSec
More security news
We help organizations find and fix the gaps before they make headlines.