{"id":50031,"date":"2023-01-09T12:17:52","date_gmt":"2023-01-09T12:17:52","guid":{"rendered":"http:\/\/31920c74-2c9f-4c84-9de4-45f953e60fe2"},"modified":"2023-01-09T12:17:52","modified_gmt":"2023-01-09T12:17:52","slug":"this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/","title":{"rendered":"This Mac ransomware is old but it could still cause you big problems"},"content":{"rendered":"<figure class=\"c-shortcodeImage u-clearfix c-shortcodeImage-large\">\n<div class=\"c-shortcodeImage_imageContainer\">\n<div class=\"c-shortcodeImage_image\"><picture class=\"c-cmsImage c-cmsImage_loaded\"><source media=\"(max-width: 767px)\" srcset=\"https:\/\/www.zdnet.com\/a\/img\/resize\/270a688869d3ca8897583d73f89b5bd950202344\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=768\" alt=\"getty-a-man-and-a-woman-looking-at-a-macbook-with-concern\"><source media=\"(max-width: 1023px)\" srcset=\"https:\/\/www.zdnet.com\/a\/img\/resize\/1dd2b15ba0dbe26ef046c89443b1bc31038b822d\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1024\" alt=\"getty-a-man-and-a-woman-looking-at-a-macbook-with-concern\"><source media=\"(max-width: 1440px)\" srcset=\"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\" alt=\"getty-a-man-and-a-woman-looking-at-a-macbook-with-concern\"><img decoding=\"async\" src=\"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\" alt=\"getty-a-man-and-a-woman-looking-at-a-macbook-with-concern\" width=\"1280\" height=\"853.7358490566038\" fetchpriority=\"low\"><\/picture><\/div>\n<p> <!----><\/div>\n<p> <!----><figcaption> <span class=\"c-shortcodeImage_credit g-outer-spacing-top-xsmall u-block\">Image: Getty\/GaudiLab<\/span><\/figcaption><\/figure>\n<p>Ransomware attacks aren&#8217;t just a threat to Windows operating systems &#8212; they&#8217;re encrypting files on macOS devices and demanding ransom payments for a decryption tool, too.&nbsp;<\/p>\n<p><a href=\"https:\/\/www.microsoft.com\/en-us\/security\/blog\/2023\/01\/05\/unraveling-the-techniques-of-mac-ransomware\/\" target=\"_blank\" rel=\"noopener noreferrer nofollow\">Cybersecurity researchers at Microsoft Security Threat Intelligence<\/a> have detailed several <a href=\"https:\/\/www.zdnet.com\/article\/ransomware-an-executive-guide-to-one-of-the-biggest-menaces-on-the-web\/\" rel=\"follow\">ransomware<\/a> campaigns targeting Apple-based computers and networks &#8212; and the methods of attack are very familiar to those used by cyber criminals targeting Microsoft Windows and other operating systems.&nbsp;<\/p>\n<p>In many instances, the initial compromise occurs after the user is tricked into providing access to cyber criminals, such as by opening <a href=\"https:\/\/www.zdnet.com\/article\/what-is-phishing-how-to-protect-yourself-from-scam-emails-and-more\/\" rel=\"follow\">phishing emails<\/a> or downloading and then running fake or <a href=\"https:\/\/www.zdnet.com\/article\/fbi-these-fake-apps-are-trying-to-steal-your-crypto-heres-what-to-watch-out-for\/\" rel=\"follow\">trojanized applications<\/a> that install ransomware.&nbsp;<\/p>\n<p>The ransomware can also arrive as a&nbsp;<a href=\"https:\/\/www.zdnet.com\/article\/this-new-malware-is-now-at-the-heart-of-the-ransomware-ecosystem\/\" rel=\"follow\">second-stage payload dropped by other malware<\/a> that has been previously installed on the machine, either by the same cyber criminals or access brokers leasing out access to compromised systems, <a href=\"https:\/\/www.zdnet.com\/article\/nsa-to-developers-weve-got-some-software-supply-chain-security-tips-for-you\/\" rel=\"follow\">or uploaded as part of a software supply chain attack<\/a>, where attackers have managed to compromise a software update.&nbsp;<\/p>\n<p><strong><strong>Also:&nbsp;<\/strong><\/strong><a href=\"https:\/\/www.zdnet.com\/article\/ransomware-why-its-still-a-big-threat-and-where-the-gangs-are-going-next\/\" rel=\"follow\"><strong><strong>Ransomware: Why it&#8217;s still a big threat, and where the gangs are going next<\/strong><\/strong><\/a><\/p>\n<p>While most ransomware campaigns target Windows systems, and are likely drawn in by the sheer number of organizations that base their infrastructure on Microsoft Windows, Macs aren&#8217;t immune. Ransonmware on Macs isn&#8217;t a new phenomenon. But researchers warn the evolution of the attacks on MacOS demonstrate how ransomware isn&#8217;t just a threat to one particular operating system.&nbsp;<\/p>\n<p>&#8220;Ransomware continues to be one of the most prevalent and impactful threats affecting organizations, with attackers constantly evolving their techniques and expanding their tradecraft to cast a wider net of potential targets,&#8221; Microsoft said in a blog post.&nbsp;<\/p>\n<p>&#8220;While these malware families are old, they exemplify the range of capabilities and malicious behaviour possible on the platform,&#8221; they added.&nbsp;<\/p>\n<p>Like other forms of ransomware on other operating systems, ransomware targeting MacOS comes equipped with features designed to achieve persistence and avoid detection until it&#8217;s too late. &nbsp;<\/p>\n<p>These features include delaying execution of the malware to avoid detection in the earliest stages of the attack, instructions to run each time the machine is started, and using legitimate features in MacOS to run commands and help spread the attack.&nbsp;<\/p>\n<p>But one particular form of Mac ransomware looks as if it has much more in mind than the sole focus on encrypting files and demanding an extortion payment &#8212; analysis shows that it has much more powerful capabilities, too.&nbsp;<\/p>\n<p>The ransomware is known as EvilQuest, which first emerged in 2020 and is still targeting Mac systems today.&nbsp;<\/p>\n<p>According to Microsoft, newer versions of EvilQuest come with additional capabilities, including keylogging, which sends a record of what the infected victim types with their keyboard to attackers, something that can be exploited to secretly steal usernames and passwords.&nbsp;<\/p>\n<p>EvilQuest is also capable of disabling security software, a tactic used to reduce the chances of the ransomware being spotted before the final attack is triggered.&nbsp;<\/p>\n<p>Other forms of Mac ransomware detailed by Microsoft include KeRanger, FileCoder, and MacRansom &#8212; and they all use techniques designed to make manual discovery by users or cybersecurity teams difficult. &nbsp;<\/p>\n<p>Microsoft says it has detailed extensive information on the Mac ransomware to aid defence against attacks.&nbsp;<\/p>\n<p><strong>Also:&nbsp;<\/strong><a href=\"https:\/\/www.zdnet.com\/article\/google-warns-android-patch-gap-is-leaving-these-smartphones-vulnerable-to-attack\/\" rel=\"follow\"><strong>Google warns: Android &#8216;patch gap&#8217; is leaving these smartphones vulnerable to attack<\/strong><\/a><\/p>\n<p>&#8220;Ransomware continues to be one of the most significant threats affecting any platform. Our analysis of ransomware on Mac operating systems shows how its creators use various techniques to remain hidden from automated analysis systems or make manual inspection by analysts challenging,&#8221; said the write-up.&nbsp;<\/p>\n<p>&#8220;Understanding ransomware routines and their effects on any device or platform is essential for individual users to take steps towards device and data protection.&#8221;<\/p>\n<p>Some of the advice over how to avoid falling victim to ransomware includes only installing applications from trusted sources, such as a software platform&#8217;s official app store, and restricting access to privileged resources if users don&#8217;t need them, as that approach will help prevent the spread of ransomware.&nbsp;<\/p>\n<p>It&#8217;s also recommended that <a href=\"https:\/\/www.zdnet.com\/article\/cybersecurity-how-to-get-your-software-patching-strategy-right-and-keep-the-hackers-at-bay\/\" rel=\"follow\">operating systems are kept up to date with the latest security patches<\/a>&nbsp;to ensure they&#8217;re protected against cyberattacks that exploit known vulnerabilities.&nbsp;<\/p>\n<p>And no matter which operating system is being used, organizations should help employees understand how to maintain good cybersecurity hygiene.&nbsp;<\/p>\n<h3><strong>MORE ON CYBERSECURITY<\/strong><\/h3>\n<p>READ MORE <a href=\"https:\/\/www.zdnet.com\/article\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#ftag=RSSbaffb68\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ransomware is a major cybersecurity issue &#8211; and it doesn&#8217;t matter which operating system you use.<br \/>\nREAD MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[62],"tags":[],"class_list":["post-50031","post","type-post","status-publish","format-standard","hentry","category-zdnet-security"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.8 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>This Mac ransomware is old but it could still cause you big problems 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"This Mac ransomware is old but it could still cause you big problems 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-01-09T12:17:52+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"This Mac ransomware is old but it could still cause you big problems\",\"datePublished\":\"2023-01-09T12:17:52+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/\"},\"wordCount\":754,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\\\/2023\\\/01\\\/06\\\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\\\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\",\"articleSection\":[\"ZDNet | Security\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/\",\"name\":\"This Mac ransomware is old but it could still cause you big problems 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\\\/2023\\\/01\\\/06\\\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\\\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\",\"datePublished\":\"2023-01-09T12:17:52+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\\\/2023\\\/01\\\/06\\\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\\\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\",\"contentUrl\":\"https:\\\/\\\/www.zdnet.com\\\/a\\\/img\\\/resize\\\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\\\/2023\\\/01\\\/06\\\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\\\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"This Mac ransomware is old but it could still cause you big problems\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"This Mac ransomware is old but it could still cause you big problems 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/","og_locale":"en_US","og_type":"article","og_title":"This Mac ransomware is old but it could still cause you big problems 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-01-09T12:17:52+00:00","og_image":[{"url":"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"This Mac ransomware is old but it could still cause you big problems","datePublished":"2023-01-09T12:17:52+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/"},"wordCount":754,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#primaryimage"},"thumbnailUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280","articleSection":["ZDNet | Security"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/","url":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/","name":"This Mac ransomware is old but it could still cause you big problems 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#primaryimage"},"thumbnailUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280","datePublished":"2023-01-09T12:17:52+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#primaryimage","url":"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280","contentUrl":"https:\/\/www.zdnet.com\/a\/img\/resize\/1073a7ce2b8a59e7f602454ce2f0bdb8738c0b19\/2023\/01\/06\/69a071b0-0f05-43b0-aaa5-4908e8a2ff9d\/getty-a-man-and-a-woman-looking-at-a-macbook-with-concern.jpg?auto=webp&amp;width=1280"},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/this-mac-ransomware-is-old-but-it-could-still-cause-you-big-problems\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"This Mac ransomware is old but it could still cause you big problems"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/50031","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=50031"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/50031\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=50031"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=50031"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=50031"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}