We recently discovered a new malware that showcases sophisticated features such as certificate abuse and security software evasion that affects machines using Apple’s OSX operating system. This malware, which specifically targets Swiss banking users, uses a phishing campaign to drop its payload, which eventually results in the hijacking of a user’s network traffic using a Man-in-the- Middle (MitM) attack. OSX_DOK.C seems to be another version of WERDLOD, which is a malware that was used during the Operation Emmental campaigns.
Post from: Trendlabs Security Intelligence Blog - by Trend Micro
OSX Malware Linked to Operation Emmental Hijacks User Network Traffic