Topics Tools Books & Guides Talk to Securafy

Knowledge Hub / IT Operations

IT Operations

Another Malware Attack On Mac Systems Has Been Discovered

Another Malware Attack On Mac Systems Has Been Discovered

Randy Hall By Randy Hall Updated Jul 2024 3 min read Share

Barely a week ago, Patrick Wardle announced the discovery of the first piece of malware capable of slipping past the defenses of Apple's M1, which was considered to be among the most secure commercially available technology. Now, it seems, there are two.

Researchers from Red Canary and Malwarebytes jointly discovered an insidious, stealthy malware strain that had found its way onto more than 30,000 Apple computers, including M1's.

There are several things that make this a noteworthy discovery, but the biggest and most important are:

First, the M1 only recently came out and already at least two threats have been found in the wild that are capable of slipping past its impressive defenses. If there are two, there are probably others that we don't yet know about.

Second, this malware strain was designed to self-destruct after delivering its payload, erasing all traces that it was ever there and making it virtually impossible to trace. Fortunately, the strain, dubbed 'Silver Sparrow' by those who discovered it, did not carry a payload. Its discovery allowed Apple to revoke its binaries, which should prevent any user from inadvertently installing it.

At this point, no one is quite sure who's behind the malicious code, but it is highly advanced. Also, there's the fact that it was spotted sans payload indicates that it may have been a trial run in anticipating of launching an attack with a potentially devastating payload. Unfortunately, that risk is still present, and again, this new strain seems capable of slipping past even the best antivirus defenses in the industry.

All of this underscores the fact that no matter how lavishly you spend on technology, you are not safe. You may make it relatively more difficult for the hackers to breach your system, but if they want in badly enough, they're going to find a way. That means that in addition to top notch detection, you need to have rapid response teams ready in the event that you are breached. If this latest malware strain is any indication, it's just a matter of time, no matter how much you spend on defense.

Join The Conversation

Have a question or perspective on this topic? Add it below.

Randy Hall

About The Author

Randy Hall · CEO & Founder

Randy Hall is the CEO and Founder of Securafy, with decades of experience helping organizations make smarter, safer decisions about technology.

A frequent speaker and instructor at national IT events, Randy has advised thousands of organizations, from startups and SMBs to large enterprises and U.S. government entities, on secure, practical technology adoption. He writes about the decisions business leaders are often expected to make without enough context, including cybersecurity, compliance, AI, cyber insurance, IT strategy, and business resilience.

Outside the office, you’ll often find Randy on Lake Erie enjoying time on his 38-foot Chris-Craft.

Writes about: Cybersecurity strategy, compliance, AI security, business resilience, cyber insurance, SMB risk, IT leadership

More From This Author →

Get Practical Cybersecurity Field Notes

Monthly cybersecurity, compliance, and IT strategy updates from Securafy, written for business owners who need clear next steps.

  • Practical security tips from our Cyber Security Drip series
  • The Securafy Times, our monthly roundup on compliance and IT strategy
  • Occasional updates on new tools, guides, and research
  • No spam — unsubscribe anytime