AppleJeus (OS X)

Malware type
backdoor
Family
Malware family
Profile updated
2026-07-07 12:46:00

Targeted industries: financial-services technology-and-telecommunications

Context

According to PcRisk AppleJeus is the name of backdoor malware that was distributed by the Lazarus group. They spread this malicious software through a fake app disguised as a cryptocurrency trading application called Celas Trade Pro.

Reports & references

  • Kaspersky — 87553 (report)
  • CISA — Aa21 048A (report)
  • Kaspersky — 97937 (report)
  • ti.qianxin.com — Cb78386A082F465F259B37Dae5Df4884 (report)
  • blog.lexfo.fr — Lexfo Whitepaper The Lazarus Constellation (report)
  • blackberry.com — Report Bb 2021 Threat Report (report)
  • vblocalhost.com — Vb2021 Park (report)
  • malpedia.caad.fkie.fraunhofer.de — Osx.Applejeus (report)
  • Broadcom/Symantec — Lazarus North Korea Indictment (report)
  • CISA — Ar21 048F (report)
  • blog.sekoia.io — The Dprk Delicate Sound Of Cyber (report)
  • CISA — Ar21 048D (report)
  • CISA — Ar21 048A (report)
  • objective-see.com — Blog 0X5F (report)
  • CISA — Ar21 048E (report)
  • CISA — Ar21 048C (report)
  • objective-see.com — Blog 0X49 (report)
  • youtube.com — Watch (report)
  • objective-see.com — Blog 0X54 (report)
  • posts.specterops.io — Introducing Venator A Macos Tool For Proactive Detection 34055A017E56 (report)
  • CISA — Ar21 048B (report)
  • youtube.com — Watch (report)
  • sentinelone.com — Four Distinct Families Of Lazarus Malware Target Apples Macos Platform (report)
  • brandefense.io — Lazarus Apt Group Apt38 (report)
  • CISA — Ar21 048G (report)

External references