MacMa - S1016 (bdee9574-7479-4073-a7dc-e86d8acd073a)
MacMa is a macOS-based backdoor with a large set of functionalities to control and exfiltrate files from a compromised computer. MacMa has been observed in the wild since November 2021.(Citation: ESET DazzleSpy Jan 2022) MacMa shares command and control and unique libraries with MgBot and Nightdoor, indicating a relationship with the Daggerfly threat actor.(Citation: Symantec Daggerfly 2024)