UpdateAgent malware bypasses macOS Gatekeeper

A new variant of the macOS malware known as UpdateAgent shows its evolution into a dropper. UpdateAgent can now infect Mac computers with additional malware while bypassing the protections provided by Gatekeeper.

This newest version of UpdateAgent is written in Swift and disguises itself as a Mach-O binary. The malware connects to a remote server, where it obtains a Bash script that runs a malicious disk image file on the affected system.

Mac computers are an increasingly popular target for cybercriminals, a fact for which the continuing development on this malware is just the latest piece of evidence. There's no better time than the present to start taking cybersecurity on Macs seriously.

Acronis Cyber Protect Cloud uses advanced detection engines to identify and block UpdateAgent and other malware on your Mac computers, keeping them safe from threats and protecting your data.