SentinelOne Vs. macOS.Gimmick – Detection and Protection

See SentinelOne kill, quarantine, and mitigate macOS.Gimmick. macOS.Gimmick (a variant of macOS.Macma) is a macOS-specific variant of the multi-platform ‘GIMMICK’ malware, associated with the Storm Cloud threat group. The malware uses popular hosting services such as Google Drive for command and control operations. In some cases, the attackers limit C2 operations to the working hours of the target in order to blend in with normal traffic.

Verified by MonsterInsights