TLP:WHITE3 IOCs
PamStealer macOS Infostealer Uses Rust Payload to Validate and Steal Passwords
Diamond Model
Adversary
Infrastructure(3)
Capability
Victim
Attack Flow10 steps · MITRE ATT&CK mapped
5W+H Threat Analysis
Analysis unavailable
Indicators of Compromise
Indicators of Compromise3
| Type | Indicator | Confidence | Score | First Seen |
|---|---|---|---|---|
| Domain | maccyapp.com exploitintel-blogmalware | High | 69 | Jun 3, 26 |
| URL | https://avenger-sync.live/api/sync c2exfiltrationintel-blog | High | 58 | Jul 3, 26 |
| Domain | ethereum-rpc.publicnode.com indicatorintel-blognetwork | High | 58 | Jul 3, 26 |
IOC Relationship Graph
IOC Relationship Graph3 total IOCs
DomainURL