This makos malware was dormant for years but may have silently infected thousands of devices


  • Chillyhell is a modular Mako’s back door created in 2021 that passed Apple’s notary and remained undetected for years
  • Mandiant discovered it in 2023 but info was not shared publicly so AV tools did not catch on
  • Jamf postponed it in 2025 and revealed that it is still notarized and not marked by antivirus engines

For at least four years, a piece of modular apple malware was inserted on target units without being marked by antivirus solutions.

To make it worse, for at least two years, (part of) the cyber security community was aware of its existence.

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top