A new version of the Banshee malware has been avoiding detection on macOS systems for the past two months, adopting encryption methods from Apple’s XProtect. Banshee, first introduced in 2024, is an information stealer that masquerades as a legitimate service while exfiltrating data, including users’ passwords and cryptocurrency wallet details. The malware is primarily distributed via deceptive GitHub repositories, with reports of ongoing distribution despite the source code being leaked.

The NCSC wants developers to get serious on software security
The NCSC’s new Software Security Code of Practice has been praised by cyber professionals as a significant advancement in enhancing software supply chain security.