@bryant1
The researchers discovered apps with malicious intent that were mistakenly identified as safe by Microsoft's VirusTotal online scanning service. These apps were found in variants written in Go and Python and utilized the Google Flutter app, an open-source developer kit for creating multi-platform applications. Notably, five out of six of these malicious apps had developer account signatures and were temporarily notarized by Apple. The researchers noted that the domains and techniques used in the malware closely resemble those associated with other North Korean malware, suggesting that the malware was once signed and even temporarily passed Apple's notarization process.