Moonlock Lab

Lifebuoy
Under the hood of the Atomic macOS stealer (AMOS): Header image
In the past year, macOS users have seen increased adware, potentially unwanted applications (PUA), and malware, including stealers. In the case of stealer malware, the goal is to extract personal data from victims...
Aug 16, 2023
3 min read
How to unpack malicious SHC-compiled scripts with Qiling Framework (Header image)
Malware authors often employ a variety of techniques to make life difficult for security researchers. These techniques can include using obfuscation, packing, encryption, and anti-debugging measures to hide the functionality of their code,...
Jul 17, 2023
13 min read
Malicious package distributed through the PyPI registry (Header image)
On May 17, a malicious Python package known as “pymafka” was detected in the Python Package Index registry. The “pymafka” package is similar to the legitimate PyKafka software, the client implemented in Python...
Jul 17, 2023
4 min read