The HandBrake for Mac Supply Chain Attack
Updated 5 Oct 2026 · Incident date 2 May 2017 · vendor binary
HandBrake for Mac 1.0.7 (genuine DMG) -> trojanized HandBrake-1.0.7.dmg served from download.handbrake.frHandBrake.app bundle inside HandBrake-1.0.7.dmgHandBrake for Mac 1.0.7 was the version that attackers replaced on a download mirror in May 2017. The replacement DMG installed a remote access trojan that security vendors name OSX.Proton or OSX/Proton.B.
The app looked normal. On first launch it asked for an administrator password and claimed it needed to install codecs. Intego reports that the backdoor then runs on the Mac.
What happened
Attackers replaced the genuine HandBrake 1.0.7 DMG on the mirror download.handbrake.fr with a trojanized copy. BleepingComputer reports that the bad file was online from 2 May 2017 at 14:30 UTC until 6 May 2017 at 01:00 UTC. Intego reports public disclosure on 7 May 2017.
The trojanized DMG looked like HandBrake. On first launch it asked for administrator rights and said it needed to install codecs. Intego names the backdoor activity_agent and says it targets OS X 10.7 or newer. The malware is a variant of the Proton RAT for macOS.
Malwarebytes also reports that the Homebrew package manager served the bad download. The malware talks to servers on handbrake.biz. Malwarebytes reports that this domain was registered on 29 April 2017, three days before the swap.
The malware steals data. It writes archives of stolen data into a folder named VideoFrameworks in the user library. Malwarebytes lists several archives there, plus one master archive named proton.zip.
BleepingComputer reports that users who updated through the built-in updater were safe, because that updater checks a DSA signature (available since version 0.10.6).
Affected versions
- HandBrake for Mac 1.0.7, only the DMG downloaded from
download.handbrake.frbetween 2 May 2017 14:30 UTC and 6 May 2017 01:00 UTC. - Installs through Homebrew in the same period (Malwarebytes).
- Not affected: users who updated through the app's own updater, which checks a DSA signature (BleepingComputer).
- Not affected: HandBrake downloads from before or after the window.
Indicators of compromise
- Malicious DMG SHA1:
0935a43ca90c6c419a49e4f8f1d75e68cd70b274(Intego). - Genuine DMG SHA1:
75c6204d7bd7d9c6e5b1fedb56697ae2f3857789(Intego). - Malicious DMG SHA256:
013623e5e50449bbdf6943549d8224a122aa6c42bd3300a1bd2b743b01ae6793(BleepingComputer). - Launch agent:
~/Library/LaunchAgents/fr.handbrake.activity_agent.plist - Malware app:
~/Library/RenderFiles/activity_agent.app - Cache folder:
~/Library/Caches/fr.handbrake.activity_agent(Intego). - Stolen data archive:
~/Library/VideoFrameworks/proton.zip - A process named
Activity_agentin Activity Monitor. - Network:
api.handbrake.biz,handbrake.biz, and IP address85.17.25.66.
How to check
You can check for the malware files and compare the checksum of any saved HandBrake DMG. Run these commands in Terminal. Each command only reads files.
ls -l ~/Library/LaunchAgents/fr.handbrake.activity_agent.plist ~/Library/RenderFiles/activity_agent.app ~/Library/VideoFrameworks/proton.zip
shasum ~/Downloads/HandBrake-1.0.7.dmg
If any of the first three paths exist, treat the Mac as infected. If the SHA1 equals 0935a43c...b274, the DMG is the trojanized copy. The genuine DMG gives 75c6204d...7789.
What to do now
- Disconnect the Mac from the network if any indicator is present.
- Unload the launch agent:
launchctl unload ~/Library/LaunchAgents/fr.handbrake.activity_agent.plist(BleepingComputer). - Delete
~/Library/RenderFiles/activity_agent.app, the launch agent file, the cache folder, and theVideoFrameworksfolder if it holdsproton.zip. - Delete every copy of HandBrake.app that came from the bad DMG, then install a clean version from the official site.
- Change every password stored in the keychain and in browser password managers. Do this from a clean device. The malware took an admin password, so treat that password as stolen too.
- Run a malware scan. Malwarebytes detects the threat as OSX.Proton. For a Mac that held sensitive data, a full reinstall is the safest option.
What Vigilance showed
Vigilance compares the version you trust with the new one and names the file that gained a new capability. The block below is rebuilt from the public reports in the words Vigilance prints. It is not a captured scan, because the malicious release is not redistributed.
files scanned: 75 HEADS UP 1 file can now do things the old version could not. The rest changed and gained nothing. CHANGED HandBrake.app It now reads saved passwords and access keys. It did not before.
Frequently asked questions
Which HandBrake version was infected?
HandBrake for Mac 1.0.7, only the DMG that download.handbrake.fr served between 2 May 2017 and 6 May 2017. Homebrew installs in that period were also affected, according to Malwarebytes.
How do I know if I have the HandBrake Proton malware?
Look for the file ~/Library/LaunchAgents/fr.handbrake.activity_agent.plist, the folder ~/Library/RenderFiles/activity_agent.app, or a process named Activity_agent. Also compare the SHA1 of the DMG with the genuine value 75c6204d7bd7d9c6e5b1fedb56697ae2f3857789.
What did the HandBrake malware steal?
It asked for the administrator password, then wrote stolen data into archives in the VideoFrameworks folder, with proton.zip as the master archive. Change every stored password if you were infected.
Sources
More supply chain attacks
- JDownloader official site installer swap 6 May 2026
- CPUID CPU-Z / HWMonitor download compromise 9 Apr 2026
- DAEMON Tools trojanized installers 8 Apr 2026
- eScan antivirus update server compromise (2026) 20 Jan 2026
All 111 attacks in the library · What is a supply chain attack? · How to prevent supply chain attacks
Check the next update before you install it
Vigilance compares the version you trust with the new one. It names the one file that can now do something it could not do before.