ZuRu
- First seen
- 2023-05-01 00:00:00
- Malware type
- downloader, spyware
- Profile updated
- 2026-07-07 14:38:04
Targeted industries: technology-and-telecommunications
Context
A malware that was observed being embedded alongside legitimate applications (such as iTerm2) offered for download on suspicious websites pushed in search engines. It uses a Python script to perform reconnaissance on the compromised system an pulls additional payload(s).
Reports & references
- malpedia.caad.fkie.fraunhofer.de — Osx.Zuru (report)
- objective-see.com — Blog 0X66 (report)
- Trend Micro — Mac Users Targeted By Trojanized Iterm2 App (report)