/SSFinder

Script to find IoCs of Silver Sparrow malware

Primary LanguageShell

SSFinder

image

SSFinder is a simple script that searches for IoCs of Silver Sparrow malware in MacOS.

"According to data provided by Malwarebytes, Silver Sparrow had infected 29,139 macOS endpoints across 153 countries as of February 17, including high volumes of detection in the United States, the United Kingdom, Canada, France, and Germany." - Red Canary

Usage

chmod +x SSFinder.sh
./SSFinder.sh