A recent campaign targeting individuals in Hong Kong has leveraged at least two pieces of malware designed to target macOS systems. In November 2021, Google shared details about an attack where macOS malware was delivered to users in Hong Kong via compromised pro-democracy websites that served as watering holes. According to Google, the attack, discovered in late August, was likely conducted by a well-resourced state-sponsored threat group. The attackers leveraged both iOS and macOS exploits. The macOS exploit involved a WebKit remote code execution vulnerability patched by Apple in January 2021 (CVE-2021-1789) and a privilege escalation flaw that Apple patched...