Fake WhatsApp website drops malware targeting MacOS and Windows OS


It drops a RAT as a final stage payload, which takes over the compromised machine remotely and performs various malicious activities.
The fake website has been visited by over 300 visitors.

What is the issue?


Researchers observed that attackers are distributing malware to infect Mac OS and Windows OS via a malicious website disguised a WhatsApp official website. This malicious website has been visited by over 300 visitors.


The big picture


The malicious code embedded in the fake website detects whether the operating system is Windows or MacOS.
If it is a MacOS, then malware dubbed ‘Ma ..