{"id":10501,"date":"2025-07-15T12:38:19","date_gmt":"2025-07-15T05:38:19","guid":{"rendered":"https:\/\/infosec.new88088.net\/?p=10501"},"modified":"2026-02-05T12:38:28","modified_gmt":"2026-02-05T05:38:28","slug":"bay-trojan-giang-san-tren-macos-chien-dich-ma-doc-va-danh-cap-he-thong-tu-ben-trong","status":"publish","type":"post","link":"https:\/\/infosec.new88088.net\/2025\/07\/15\/bay-trojan-giang-san-tren-macos-chien-dich-ma-doc-va-danh-cap-he-thong-tu-ben-trong\/","title":{"rendered":"&#8220;B\u1eaby trojan&#8221; gi\u0103ng s\u1eb5n tr\u00ean macOS: Chi\u1ebfn d\u1ecbch m\u00e3 \u0111\u1ed9c v\u00e0 \u0111\u00e1nh c\u1eafp h\u1ec7 th\u1ed1ng t\u1eeb b\u00ean trong"},"content":{"rendered":"<p><b>C\u00e1c chuy\u00ean gia b\u1ea3o m\u1eadt v\u1eeba c\u1ea3nh b\u00e1o: Hacker \u0111ang l\u1ee3i d\u1ee5ng c\u00e1c c\u00f4ng c\u1ee5 Mac h\u1ee3p ph\u00e1p \u0111\u1ec3 ph\u00e1t t\u00e1n trojan nguy hi\u1ec3m macOS.ZuRu, ng\u1ee5y trang trong nh\u1eefng \u1ee9ng d\u1ee5ng ph\u1ed5 bi\u1ebfn \u0111\u01b0\u1ee3c t\u1ea3i v\u1ec1 nh\u1eb1m l\u1eeba ng\u01b0\u1eddi d\u00f9ng c\u00e0i \u0111\u1eb7t ph\u1ea7n m\u1ec1m nhi\u1ec5m m\u00e3 \u0111\u1ed9c.<\/b><\/p>\n<div style=\"text-align: center\">\n<div class=\"bbImageWrapper  js-lbImage\" title=\"1752547459416.png\" data-src=\"https:\/\/whitehat.vn\/attachments\/1752547459416-png.17308\/\" data-lb-sidebar-href=\"\" data-lb-caption-extra-html=\"\" data-single-image=\"1\"><img fetchpriority=\"high\" decoding=\"async\" class=\"bbImage\" title=\"1752547459416.png\" src=\"https:\/\/whitehat.vn\/attachments\/1752547459416-png.17308\/\" alt=\"1752547459416.png\" width=\"679\" height=\"369\" data-url=\"\" data-zoom-target=\"1\" \/><\/div>\n<p>\u200b<\/p><\/div>\n<h2>Trojan ng\u1ee5y trang trong \u1ee9ng d\u1ee5ng SSH n\u1ed5i ti\u1ebfng: Termius\u200b<\/h2>\n<p>Trong chi\u1ebfn d\u1ecbch g\u1ea7n \u0111\u00e2y, nh\u00f3m t\u1ea5n c\u00f4ng \u0111\u00e3 ch\u00e8n trojan ZuRu v\u00e0o b\u1ed9 c\u00e0i c\u1ee7a Termius, m\u1ed9t \u1ee9ng d\u1ee5ng SSH \u0111a n\u1ec1n t\u1ea3ng \u0111\u01b0\u1ee3c s\u1eed d\u1ee5ng ph\u1ed5 bi\u1ebfn \u0111\u1ec3 qu\u1ea3n l\u00fd m\u00e1y ch\u1ee7 t\u1eeb xa.<\/p>\n<p>Trojan macOS.ZuRu sau khi \u0111\u01b0\u1ee3c c\u00e0i \u0111\u1eb7t s\u1ebd ho\u1ea1t \u0111\u1ed9ng ng\u1ea7m, duy tr\u00ec quy\u1ec1n truy c\u1eadp tr\u00e1i ph\u00e9p, \u0111\u1ed3ng th\u1eddi c\u00f3 th\u1ec3 t\u1ea3i v\u1ec1 th\u00eam th\u00e0nh ph\u1ea7n \u0111\u1ed9c h\u1ea1i v\u00e0 th\u1ef1c thi l\u1ec7nh t\u1eeb xa t\u1eeb m\u00e1y ch\u1ee7 c\u1ee7a hacker.<\/p>\n<p>\u0110\u01b0\u1ee3c ph\u00e1t hi\u1ec7n l\u1ea7n \u0111\u1ea7u \u1edf Trung Qu\u1ed1c v\u00e0o th\u00e1ng 7\/2021 th\u00f4ng qua k\u1ebft qu\u1ea3 t\u00ecm ki\u1ebfm Baidu, trojan n\u00e0y t\u1eebng \u0111\u01b0\u1ee3c d\u00f9ng \u0111\u1ec3 l\u00e2y nhi\u1ec5m c\u00e1c c\u00f4ng c\u1ee5 ph\u1ed5 bi\u1ebfn d\u00e0nh cho nh\u00e0 ph\u00e1t tri\u1ec3n macOS nh\u01b0 SecureCRT, Navicat v\u00e0 Microsoft Remote Desktop for Mac.<\/p>\n<h2>Bi\u1ebfn th\u1ec3 m\u1edbi tinh vi h\u01a1n v\u00e0 \u0111\u00e1nh l\u1eeba ng\u01b0\u1eddi d\u00f9ng hi\u1ec7u qu\u1ea3\u200b<\/h2>\n<p>T\u1eeb n\u0103m ngo\u00e1i, c\u00e1c \u1ee9ng d\u1ee5ng l\u1eadu \u0111\u00e3 b\u1eaft \u0111\u1ea7u ch\u1ee9a bi\u1ebfn th\u1ec3 ZuRu m\u1edbi v\u1edbi kh\u1ea3 n\u0103ng \u0111i\u1ec1u khi\u1ec3n t\u1eeb xa m\u1ea1nh h\u01a1n v\u00e0 v\u01b0\u1ee3t qua c\u00e1c bi\u1ec7n ph\u00e1p b\u1ea3o v\u1ec7 truy\u1ec1n th\u1ed1ng c\u1ee7a macOS.<\/p>\n<p>Bi\u1ebfn th\u1ec3 m\u1edbi nh\u1ea5t c\u1ee7a macOS.ZuRu ti\u1ebfp t\u1ee5c xu h\u01b0\u1edbng gi\u1ea3 m\u1ea1o c\u00e1c \u1ee9ng d\u1ee5ng macOS h\u1ee3p ph\u00e1p, \u0111\u1eb7c bi\u1ec7t l\u00e0 nh\u1eefng c\u00f4ng c\u1ee5 ph\u1ed5 bi\u1ebfn trong c\u1ed9ng \u0111\u1ed3ng l\u1eadp tr\u00ecnh vi\u00ean v\u00e0 chuy\u00ean vi\u00ean IT. Nh\u00f3m t\u1ea5n c\u00f4ng s\u1eed d\u1ee5ng k\u1ef9 thu\u1eadt thay th\u1ebf ch\u1eef k\u00fd m\u00e3 s\u1ed1 (code signature) g\u1ed1c c\u1ee7a nh\u00e0 ph\u00e1t tri\u1ec3n b\u1eb1ng ch\u1eef k\u00fd t\u1ea1m th\u1eddi do ch\u00fang t\u1ea1o ra, nh\u1eb1m qua m\u1eb7t h\u1ec7 th\u1ed1ng x\u00e1c th\u1ef1c c\u1ee7a Apple v\u00e0 c\u00e0i m\u00e3 \u0111\u1ed9c v\u00e0o \u1ee9ng d\u1ee5ng m\u00e0 ng\u01b0\u1eddi d\u00f9ng kh\u00f4ng h\u1ec1 hay bi\u1ebft.<\/p>\n<h3>Chi\u1ebfn d\u1ecbch nh\u1eafm v\u00e0o h\u1ec7 th\u1ed1ng kh\u00f4ng c\u00f3 gi\u1ea3i ph\u00e1p b\u1ea3o v\u1ec7 \u0111\u1ea7u cu\u1ed1i, t\u1eadp trung v\u00e0o ng\u01b0\u1eddi d\u00f9ng macOS m\u1edbi nh\u1ea5t\u200b<\/h3>\n<p>Theo ph\u00e2n t\u00edch c\u1ee7a c\u00e1c chuy\u00ean gia, chi\u1ebfn d\u1ecbch ph\u00e1t t\u00e1n trojan macOS.ZuRu ch\u1ee7 y\u1ebfu nh\u1eafm \u0111\u1ebfn c\u00e1c h\u1ec7 th\u1ed1ng macOS kh\u00f4ng \u0111\u01b0\u1ee3c trang b\u1ecb \u0111\u1ea7y \u0111\u1ee7 c\u00e1c gi\u1ea3i ph\u00e1p b\u1ea3o v\u1ec7 endpoint (endpoint protection). M\u00e3 \u0111\u1ed9c \u0111\u01b0\u1ee3c ph\u00e2n ph\u1ed1i th\u00f4ng qua file c\u00e0i \u0111\u1eb7t d\u1ea1ng .dmg, ch\u1ee9a phi\u00ean b\u1ea3n \u0111\u00e3 b\u1ecb trojan h\u00f3a c\u1ee7a \u1ee9ng d\u1ee5ng h\u1ee3p ph\u00e1p Termius.app, c\u00f4ng c\u1ee5 qu\u1ea3n l\u00fd m\u00e1y ch\u1ee7 SSH ph\u1ed5 bi\u1ebfn.<\/p>\n<p>So v\u1edbi b\u1ea3n ch\u00ednh h\u00e3ng (~225MB), b\u1ea3n trojan h\u00f3a c\u00f3 dung l\u01b0\u1ee3ng l\u1edbn h\u01a1n (~248MB) do \u0111\u01b0\u1ee3c nh\u00fang th\u00eam payload \u0111\u1ed9c h\u1ea1i. Sau khi ng\u01b0\u1eddi d\u00f9ng ch\u1ea1y file .dmg, trojan t\u1ef1 \u0111\u1ed9ng k\u00edch ho\u1ea1t tr\u00ecnh loader \u0111\u1ed3ng th\u1eddi v\u1edbi \u1ee9ng d\u1ee5ng Termius g\u1ed1c, nh\u1eb1m duy tr\u00ec t\u00ednh \u1ea9n m\u00ecnh v\u00e0 tr\u00e1nh b\u1ecb nghi ng\u1edd t\u1eeb ph\u00eda n\u1ea1n nh\u00e2n.<\/p>\n<p>Bi\u1ebfn th\u1ec3 m\u1edbi c\u1ee7a ZuRu \u0111\u1eb7c bi\u1ec7t t\u01b0\u01a1ng th\u00edch v\u1edbi c\u00e1c h\u1ec7 th\u1ed1ng macOS hi\u1ec7n \u0111\u1ea1i, y\u00eau c\u1ea7u phi\u00ean b\u1ea3n Sonoma 14.1 (ph\u00e1t h\u00e0nh th\u00e1ng 10\/2023) tr\u1edf l\u00ean \u0111\u1ec3 th\u1ef1c thi. Sau khi thi\u1ebft l\u1eadp th\u00e0nh c\u00f4ng, malware c\u00f3 kh\u1ea3 n\u0103ng duy tr\u00ec k\u1ebft n\u1ed1i C2 (command-and-control) \u1ed5n \u0111\u1ecbnh, v\u00e0 th\u1ef1c hi\u1ec7n nhi\u1ec1u h\u00e0nh vi x\u00e2m nh\u1eadp nh\u01b0:<\/p>\n<ul>\n<li data-xf-list-type=\"ul\">R\u00f2 r\u1ec9 v\u00e0 tr\u00edch xu\u1ea5t d\u1eef li\u1ec7u c\u00f9ng v\u1edbi kh\u1ea3 n\u0103ng truy\u1ec1n t\u1ea3i t\u1eadp tin t\u1eeb h\u1ec7 th\u1ed1ng b\u1ecb x\u00e2m nh\u1eadp<\/li>\n<li data-xf-list-type=\"ul\">Thu th\u1eadp th\u00f4ng tin h\u1ec7 th\u1ed1ng<\/li>\n<li data-xf-list-type=\"ul\">Thao t\u00fang ti\u1ebfn tr\u00ecnh h\u1ec7 th\u1ed1ng<\/li>\n<li data-xf-list-type=\"ul\">Cho ph\u00e9p th\u1ef1c thi l\u1ec7nh t\u1eeb xa v\u00e0 ghi l\u1ea1i k\u1ebft qu\u1ea3 tr\u1ea3 v\u1ec1 t\u1eeb h\u1ec7 th\u1ed1ng b\u1ecb x\u00e2m nh\u1eadp<\/li>\n<\/ul>\n<p>Trojan s\u1eed d\u1ee5ng Khepri, m\u1ed9t beacon m\u00e3 ngu\u1ed3n m\u1edf l\u00e0m n\u1ec1n t\u1ea3ng cho c\u01a1 ch\u1ebf \u0111i\u1ec1u khi\u1ec3n v\u00e0 li\u00ean l\u1ea1c t\u1eeb xa v\u1edbi m\u00e1y ch\u1ee7 C2. Trong c\u00e1c chi\u1ebfn d\u1ecbch g\u1ea7n \u0111\u00e2y, nh\u00f3m t\u1ea5n c\u00f4ng \u0111\u00e3 s\u1eed d\u1ee5ng c\u00e1c t\u00ean mi\u1ec1n \u0111\u1ed9c h\u1ea1i nh\u01b0:<\/p>\n<ul>\n<li data-xf-list-type=\"ul\">termius[.]fun<\/li>\n<li data-xf-list-type=\"ul\">termius[.]info<\/li>\n<\/ul>\n<div style=\"text-align: center\">\n<div class=\"bbImageWrapper  js-lbImage\" title=\"1752547491418.png\" data-src=\"https:\/\/whitehat.vn\/attachments\/1752547491418-png.17309\/\" data-lb-sidebar-href=\"\" data-lb-caption-extra-html=\"\" data-single-image=\"1\"><img decoding=\"async\" class=\"bbImage\" title=\"1752547491418.png\" src=\"https:\/\/whitehat.vn\/attachments\/1752547491418-png.17309\/\" alt=\"1752547491418.png\" width=\"338\" height=\"419\" data-url=\"\" data-zoom-target=\"1\" \/><\/div>\n<p>\u200b<\/p><\/div>\n<p><b><span style=\"font-size: 24px\">Chuy\u00ean gia WhiteHat: C\u1ea3nh gi\u00e1c v\u1edbi \u1ee9ng d\u1ee5ng macOS ch\u1ee9a m\u00e3 \u0111\u1ed9c ZuRu<\/span><\/b><br \/>\nTr\u01b0\u1edbc nguy c\u01a1 ng\u00e0y c\u00e0ng gia t\u0103ng t\u1eeb c\u00e1c chi\u1ebfn d\u1ecbch ph\u00e1t t\u00e1n m\u00e3 \u0111\u1ed9c \u1ea9n trong \u1ee9ng d\u1ee5ng h\u1ee3p ph\u00e1p d\u00e0nh cho macOS, \u0111i\u1ec3n h\u00ecnh l\u00e0 trojan macOS.ZuRu, c\u00e1c chuy\u00ean gia WhiteHat khuy\u1ebfn c\u00e1o:<\/p>\n<h3><b>1. L\u01b0u \u00fd cho ng\u01b0\u1eddi d\u00f9ng c<\/b>\u00e1 nh\u00e2n v\u00e0 doanh nghi\u1ec7p:\u200b<\/h3>\n<p><b>Tuy\u1ec7t \u0111\u1ed1i kh\u00f4ng t\u1ea3i ph\u1ea7n m\u1ec1m t\u1eeb ngu\u1ed3n kh\u00f4ng r\u00f5 r\u00e0ng<\/b><\/p>\n<ul>\n<li data-xf-list-type=\"ul\">Kh\u00f4ng truy c\u1eadp ho\u1eb7c t\u1ea3i \u1ee9ng d\u1ee5ng t\u1eeb c\u00e1c website kh\u00f4ng ch\u00ednh th\u1ee9c, \u0111\u1eb7c bi\u1ec7t l\u00e0 c\u00e1c trang web s\u1eed d\u1ee5ng t\u00ean mi\u1ec1n gi\u1ea3 m\u1ea1o nh\u01b0 termius[.]fun ho\u1eb7c termius[.]info.<\/li>\n<li data-xf-list-type=\"ul\">H\u1ea1n ch\u1ebf t\u1ea3i ph\u1ea7n m\u1ec1m t\u1eeb k\u1ebft qu\u1ea3 t\u00ecm ki\u1ebfm qu\u1ea3ng c\u00e1o, nh\u1ea5t l\u00e0 t\u1eeb c\u00e1c c\u00f4ng c\u1ee5 t\u00ecm ki\u1ebfm \u00edt ph\u1ed5 bi\u1ebfn.<\/li>\n<\/ul>\n<p><b>Ch\u1ec9 c\u00e0i \u0111\u1eb7t \u1ee9ng d\u1ee5ng t\u1eeb App Store ho\u1eb7c website ch\u00ednh h\u00e3ng<\/b><\/p>\n<ul>\n<li data-xf-list-type=\"ul\">Lu\u00f4n t\u1ea3i ph\u1ea7n m\u1ec1m t\u1eeb Mac App Store ho\u1eb7c trang web ch\u00ednh th\u1ee9c c\u1ee7a nh\u00e0 ph\u00e1t tri\u1ec3n \u0111\u1ec3 \u0111\u1ea3m b\u1ea3o t\u00ednh to\u00e0n v\u1eb9n v\u00e0 an to\u00e0n c\u1ee7a g\u00f3i c\u00e0i \u0111\u1eb7t.<\/li>\n<li data-xf-list-type=\"ul\">Tr\u00e1nh s\u1eed d\u1ee5ng b\u1ea3n crack, b\u1ea3n l\u1eadu ho\u1eb7c c\u00e1c b\u1ea3n chia s\u1ebb kh\u00f4ng r\u00f5 ngu\u1ed3n g\u1ed1c.<\/li>\n<\/ul>\n<p><b>Ki\u1ec3m tra ch\u1eef k\u00fd m\u00e3 s\u1ed1 (code signature) c\u1ee7a \u1ee9ng d\u1ee5ng tr\u01b0\u1edbc khi c\u00e0i \u0111\u1eb7t<\/b><\/p>\n<ul>\n<li data-xf-list-type=\"ul\">V\u1edbi ng\u01b0\u1eddi d\u00f9ng n\u00e2ng cao, n\u00ean s\u1eed d\u1ee5ng c\u00f4ng c\u1ee5 codesign ho\u1eb7c spctl \u0111\u1ec3 ki\u1ec3m tra xem \u1ee9ng d\u1ee5ng c\u00f3 \u0111\u01b0\u1ee3c k\u00fd b\u1edfi nh\u00e0 ph\u00e1t tri\u1ec3n h\u1ee3p ph\u00e1p hay kh\u00f4ng.<\/li>\n<li data-xf-list-type=\"ul\">B\u1ea5t k\u1ef3 \u1ee9ng d\u1ee5ng n\u00e0o b\u1ecb thay \u0111\u1ed5i ch\u1eef k\u00fd m\u00e3 ho\u1eb7c c\u00f3 ch\u1eef k\u00fd &#8220;Ad Hoc&#8221; \u0111\u1ec1u l\u00e0 d\u1ea5u hi\u1ec7u \u0111\u00e1ng nghi.<\/li>\n<\/ul>\n<p><b>C\u00e0i \u0111\u1eb7t ph\u1ea7n m\u1ec1m b\u1ea3o v\u1ec7 \u0111\u1ea7u cu\u1ed1i (endpoint protection) uy t\u00edn<\/b><\/p>\n<ul>\n<li data-xf-list-type=\"ul\">S\u1eed d\u1ee5ng c\u00e1c gi\u1ea3i ph\u00e1p b\u1ea3o m\u1eadt chuy\u00ean bi\u1ec7t d\u00e0nh cho macOS t\u1eeb nh\u1eefng nh\u00e0 cung c\u1ea5p uy t\u00edn nh\u01b0 ESET, Bitdefender, CrowdStrike, SentinelOne,&#8230;<\/li>\n<li data-xf-list-type=\"ul\">\u01afu ti\u00ean ph\u1ea7n m\u1ec1m c\u00f3 t\u00ednh n\u0103ng ph\u00e1t hi\u1ec7n h\u00e0nh vi v\u00e0 ki\u1ec3m so\u00e1t truy c\u1eadp \u1ee9ng d\u1ee5ng.<\/li>\n<\/ul>\n<p><b>C\u1eadp nh\u1eadt macOS v\u00e0 ph\u1ea7n m\u1ec1m b\u1ea3o m\u1eadt th\u01b0\u1eddng xuy\u00ean<\/b><\/p>\n<ul>\n<li data-xf-list-type=\"ul\">Lu\u00f4n c\u1eadp nh\u1eadt h\u1ec7 \u0111i\u1ec1u h\u00e0nh macOS l\u00ean phi\u00ean b\u1ea3n m\u1edbi nh\u1ea5t \u0111\u1ec3 nh\u1eadn c\u00e1c b\u1ea3n v\u00e1 b\u1ea3o m\u1eadt t\u1eeb Apple.<\/li>\n<li data-xf-list-type=\"ul\">B\u1eadt t\u1ef1 \u0111\u1ed9ng c\u1eadp nh\u1eadt cho ph\u1ea7n m\u1ec1m di\u1ec7t virus v\u00e0 c\u00e1c \u1ee9ng d\u1ee5ng b\u1ea3o m\u1eadt li\u00ean quan.<\/li>\n<\/ul>\n<h3><b>2. L\u01b0u \u00fd cho ng\u01b0\u1eddi d\u00f9ng ph\u1ed5 th\u00f4ng:<\/b>\u200b<\/h3>\n<p>N\u1ebfu b\u1ea1n \u0111\u00e3 t\u1eebng t\u1ea3i \u1ee9ng d\u1ee5ng t\u1eeb c\u00e1c ngu\u1ed3n kh\u00f4ng r\u00f5 r\u00e0ng ho\u1eb7c g\u1ea7n \u0111\u00e2y c\u00f3 c\u00e0i ph\u1ea7n m\u1ec1m qu\u1ea3n l\u00fd m\u00e1y ch\u1ee7 nh\u01b0 Termius t\u1eeb trang ngo\u00e0i App Store, h\u00e3y:<\/p>\n<ul>\n<li data-xf-list-type=\"ul\">G\u1ee1 c\u00e0i \u0111\u1eb7t ngay l\u1eadp t\u1ee9c, \u0111\u1eb7c bi\u1ec7t n\u1ebfu \u1ee9ng d\u1ee5ng c\u00f3 d\u1ea5u hi\u1ec7u b\u1ea5t th\u01b0\u1eddng (kh\u1edfi \u0111\u1ed9ng ch\u1eadm, h\u1ec7 th\u1ed1ng ho\u1ea1t \u0111\u1ed9ng b\u1ea5t th\u01b0\u1eddng&#8230;).<\/li>\n<li data-xf-list-type=\"ul\">Qu\u00e9t to\u00e0n b\u1ed9 h\u1ec7 th\u1ed1ng b\u1eb1ng ph\u1ea7n m\u1ec1m di\u1ec7t virus c\u1eadp nh\u1eadt m\u1edbi nh\u1ea5t.<\/li>\n<li data-xf-list-type=\"ul\">Li\u00ean h\u1ec7 v\u1edbi chuy\u00ean gia an ninh m\u1ea1ng ho\u1eb7c \u0111\u1ed9i ng\u0169 IT n\u1ed9i b\u1ed9 n\u1ebfu s\u1eed d\u1ee5ng m\u00e1y t\u00ednh trong m\u00f4i tr\u01b0\u1eddng doanh nghi\u1ec7p.<\/li>\n<\/ul>\n<p>Vi\u1ec7c gi\u1ea3 m\u1ea1o c\u00f4ng c\u1ee5 h\u1ee3p ph\u00e1p c\u00f9ng v\u1edbi kh\u1ea3 n\u0103ng t\u01b0\u01a1ng th\u00edch cao v\u00e0 c\u01a1 ch\u1ebf \u1ea9n m\u00ecnh tinh vi khi\u1ebfn ZuRu tr\u1edf th\u00e0nh m\u1ed9t trong nh\u1eefng m\u1ed1i \u0111e d\u1ecda \u0111\u00e1ng lo ng\u1ea1i nh\u1ea5t \u0111\u1ed1i v\u1edbi ng\u01b0\u1eddi d\u00f9ng macOS, \u0111\u1eb7c bi\u1ec7t l\u00e0 c\u00e1c nh\u00e0 ph\u00e1t tri\u1ec3n v\u00e0 chuy\u00ean gia CNTT l\u00e0m vi\u1ec7c trong m\u00f4i tr\u01b0\u1eddng thi\u1ebfu gi\u1ea3i ph\u00e1p ph\u00f2ng th\u1ee7 ti\u00ean ti\u1ebfn.<\/p>\n<div style=\"text-align: right\"><b><i>Theo Cyber News<\/i><\/b>\u200b<\/div>\n<div style=\"text-align: right;margin-top: 16px\"><i>Theo: <a href=\"https:\/\/whitehat.vn\/threads\/bay-trojan-giang-san-tren-macos-chien-dich-ma-doc-va-danh-cap-he-thong-tu-ben-trong.18561\/\" target=\"_blank\" rel=\"noopener noreferrer\">https:\/\/whitehat.vn\/threads\/bay-trojan-giang-san-tren-macos-chien-dich-ma-doc-va-danh-cap-he-thong-tu-ben-trong.18561\/<\/a><\/i><\/div>\n","protected":false},"excerpt":{"rendered":"<p>C\u00e1c chuy\u00ean gia b\u1ea3o m\u1eadt v\u1eeba c\u1ea3nh b\u00e1o: Hacker \u0111ang l\u1ee3i d\u1ee5ng c\u00e1c c\u00f4ng c\u1ee5 Mac h\u1ee3p ph\u00e1p \u0111\u1ec3 ph\u00e1t t\u00e1n trojan nguy hi\u1ec3m macOS.ZuRu, ng\u1ee5y trang trong nh\u1eefng \u1ee9ng d\u1ee5ng ph\u1ed5 bi\u1ebfn \u0111\u01b0\u1ee3c t\u1ea3i v\u1ec1 nh\u1eb1m l\u1eeba ng\u01b0\u1eddi d\u00f9ng c\u00e0i \u0111\u1eb7t ph\u1ea7n m\u1ec1m nhi\u1ec5m m\u00e3 \u0111\u1ed9c. \u200b Trojan ng\u1ee5y trang trong \u1ee9ng d\u1ee5ng SSH [&hellip;]<\/p>\n","protected":false},"author":46,"featured_media":0,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[33],"tags":[],"class_list":["post-10501","post","type-post","status-publish","format-standard","hentry","category-tin-tuc-cua-vien"],"_links":{"self":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/posts\/10501","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/users\/46"}],"replies":[{"embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/comments?post=10501"}],"version-history":[{"count":0,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/posts\/10501\/revisions"}],"wp:attachment":[{"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/media?parent=10501"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/categories?post=10501"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/infosec.new88088.net\/wp-json\/wp\/v2\/tags?post=10501"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}