<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz" -->

---
title: New macOS malware embeds fake errors to confuse AI...
description: A newly discovered macOS malware called &#x27;Gaslight,&#x27; attributed with high confidence to a North Korean threat actor, embeds 38 fake system error messages within...
canonical: https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: New macOS malware embeds fake errors to confuse AI analysis tools | daily.dev
og:description: A newly discovered macOS malware called &#x27;Gaslight,&#x27; attributed with high confidence to a North Korean threat actor, embeds 38 fake system error messages within...
og:url: https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz
og:image: https://api.daily.dev/og/posts/MElPTGrGZ.png
og:image:alt: New macOS malware embeds fake errors to confuse AI analysis tools
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# New macOS malware embeds fake errors to confuse AI analysis tools

**[BleepingComputer](https://daily.dev/sources/bleepingcomputer)** · 3 min read · 0 upvotes · 0 comments

## Summary

A newly discovered macOS malware called 'Gaslight,' attributed with high confidence to a North Korean threat actor, embeds 38 fake system error messages within its Rust binary to confuse AI-assisted malware analysis tools. The 3.5 KB payload contains fabricated crash reports, memory dumps, token expiration warnings, and SQL injection alerts formatted with Markdown to mimic legitimate debugging data. Rather than evading sandbox execution, the technique targets LLM-based triage agents by injecting content designed to make them doubt their own session validity, potentially causing them to abort or truncate analysis. SentinelOne researchers note this represents a novel anti-analysis approach specifically targeting AI-powered security pipelines, though they have not yet demonstrated a successful bypass of real platforms.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://www.bleepingcomputer.com/news/security/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools>

## Similar posts on daily.dev

- [Gaslight macOS Malware Is a Warning Shot at the AI Security Stack](https://daily.dev/posts/gaslight-macos-malware-is-a-warning-shot-at-the-ai-security-stack-rkec0wlb1) · Latest Hacking News · 1 upvotes · 0 comments
- [Gaslight macOS Malware Uses Prompt Injection to Evade AI Security Analysis](https://daily.dev/posts/gaslight-macos-malware-uses-prompt-injection-to-evade-ai-security-analysis-efxclc4os) · Security Boulevard · 1 upvotes · 0 comments
- [Malware authors subvert AI detection systems](https://daily.dev/posts/malware-authors-subvert-ai-detection-systems-1c32qknbs) · CSO Online · 1 upvotes · 0 comments
- [macOS.Gaslight \| Rust Backdoor Turns Prompt Injection on the Analyst, Not the Sandbox](https://daily.dev/posts/macos-gaslight-rust-backdoor-turns-prompt-injection-on-the-analyst-not-the-sandbox-nmqiw3t0x) · SentinelLABS · 0 upvotes · 0 comments

---

Tags: [#rust](https://daily.dev/tags/rust), [#malware](https://daily.dev/tags/malware), [#mac](https://daily.dev/tags/mac), [#ai-security](https://daily.dev/tags/ai-security), [#prompt-injection](https://daily.dev/tags/prompt-injection)

[View this post on daily.dev](https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"New macOS malware embeds fake errors to confuse AI analysis tools","url":"https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz"},"datePublished":"2026-06-25T16:26:30.591Z","dateModified":"2026-06-25T16:57:14.650Z","description":"A newly discovered macOS malware called 'Gaslight,' attributed with high confidence to a North Korean threat actor, embeds 38 fake system error messages within...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/c49cc8379629a2fe5f4ff9bde3c1ccdb?_a=AQAEuop","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/c49cc8379629a2fe5f4ff9bde3c1ccdb?_a=AQAEuop","isAccessibleForFree":true,"articleSection":"BleepingComputer","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"BleepingComputer","logo":"https://media.daily.dev/image/upload/s--as8nJ3qy--/f_auto,q_auto/v1774959951/logos/bleepingcomputer?_a=BAMAMiWQ0","url":"https://daily.dev/sources/bleepingcomputer"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/new-macos-malware-embeds-fake-errors-to-confuse-ai-analysis-tools-melptgrgz","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":0},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"rust,malware,mac,ai-security,prompt-injection","timeRequired":"PT3M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"BleepingComputer","item":"https://daily.dev/sources/bleepingcomputer"},{"@type":"ListItem","position":3,"name":"New macOS malware embeds fake errors to confuse AI analysis tools"}]}
```

