SentinelLabs Logo RGB WhitePurp
ABOUT
CVE DATABASE
CONTACT
VISIT SENTINELONE.COM

Phil Stokes

Phil Stokes is a Threat Researcher at SentinelOne, specializing in macOS threat intelligence, platform vulnerabilities and malware analysis. He began his journey into macOS security as a software developer, creating end user troubleshooting and security tools just at the time when macOS adware and commodity malware first began appearing on the platform. Phil has been closely following the development of macOS threats as well as researching Mac software and OS vulnerabilities since 2014.
sentinelone

The Good, the Bad and the Ugly in Cybersecurity – Week 2

The Good, the Bad and the Ugly | 4 minute read
Read More >
A Threat Hunters Guide To The Macs Most Prevalent Adware Infections 2022 12
labs
Security & Intelligence

A Threat Hunter’s Guide to the Mac’s Most Prevalent Adware Infections 2022

Phil Stokes / January 4, 2022

Mac adware is hidden, persistent, and evasive, fingerprinting devices and delivering custom payloads. Learn how to hunt it on macOS.

Read More
sentinelone

The Good, the Bad and the Ugly in Cybersecurity – Week 51

The Good, the Bad and the Ugly | 4 minute read
Read More >
sentinelone

Top 10 macOS Malware Discoveries in 2021 | A Guide To Prevention & Detection

macOS | 16 minute read
Read More >
sentinelone

The Good, the Bad and the Ugly in Cybersecurity – Week 49

The Good, the Bad and the Ugly | 4 minute read
Read More >
sentinelone

The Good, the Bad and the Ugly in Cybersecurity – Week 47

The Good, the Bad and the Ugly | 4 minute read
Read More >
sentinelone

Backdoor macOS.Macma Spies On Activists But Can’t Hide From Behavioral Detection

macOS | 8 minute read
Read More >
Infect If Needed A Deeper Dive Into Targeted Backdoor MacOS Macma 7
labs
Security Research

Infect If Needed | A Deeper Dive Into Targeted Backdoor macOS.Macma

Phil Stokes / November 15, 2021

SentinelLabs reveals further IoCs, behavior and analysis around suspected APT attack targeting macOS users and Hong Kong pro-democracy activists.

Read More
sentinelone

The Good, the Bad and the Ugly in Cybersecurity – Week 45

The Good, the Bad and the Ugly | 4 minute read
Read More >
sentinelone

Apple’s macOS Monterey | 6 Security Changes That May Have Passed You By

macOS | 7 minute read
Read More >
Previous
1 … 4 5 6 7 8 … 19
Next

SentinelLabs

In the era of interconnectivity, when markets, geographies, and jurisdictions merge in the melting pot of the digital domain, the perils of the threat ecosystem become unparalleled. Crimeware families achieve an unparalleled level of technical sophistication, APT groups are competing in fully-fledged cyber warfare, while once decentralized and scattered threat actors are forming adamant alliances of operating as elite corporate espionage teams.

Recent Posts

  • Follow the Smoke | China-nexus Threat Actors Hammer At the Doors of Top Tier Targets
    Follow the Smoke | China-nexus Threat Actors Hammer At the Doors of Top Tier Targets
    June 9, 2025
  • FreeDrain Unmasked | Uncovering an Industrial-Scale Crypto Theft Network
    FreeDrain Unmasked | Uncovering an Industrial-Scale Crypto Theft Network
    May 8, 2025
  • Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries
    Top Tier Target | What It Takes to Defend a Cybersecurity Company from Today’s Adversaries
    April 28, 2025

Sign Up

Get notified when we post new content.

Thanks! Keep an eye out for new content!

  • Twitter
  • LinkedIn
©2025 SentinelOne, All Rights Reserved.