I investigate threats, research malware, and write stories to make security accessible for everyone

About me ✌️

Arin Waichulis
Conference photo Event photo Doggo photo

Hey! I'm a cybersecurity journalist specializing in all things Apple security. I have a Bachelor's degree in CIT from Northern Kentucky University and hold a few different certifications like CompTIA Security+, Windows Defender, and more. My work covers the latest developments around emerging threat actors, iOS/macOS features/bugs, and the malware landscape. You might have seen me around conferences like DEF CON, the NKU Cybersecurity Symposium, Queen City Con, or my recent fav Objective by the Sea in Kyiv, Ukraine.

Feel free to explore my work and read my latest thoughts on my blog. If you'd like to connect, I'm always open to new opportunities and collaborations.



Projects

Arin Waichulis

My Homelab!

Completed

I built out a homelab from scratch using old managed Cisco router and switch hardware I grabbed cheap on eBay. Not for a certification per say, just pure curiosity to understand all the processes wireless routers handle automatically like DHCP, DNS, and security configs. Nothing beats learning by doing, you know?

keylogger

Basic IDE keylogger

Completed

Built a keylogger tool for monitoring keyboard activity and tracking user input. Use cases include business administration oversight, institutional word filtering, personal device security when away, parental monitoring, and self-analysis of typing habits. For educational purposes only.

work in progress

Security Awareness Platform

In progress

Developing an educational platform to train users on cybersecurity best practices, including phishing awareness, password security, and safe browsing habits.

My latest stories on 9to5Mac

Mosyle uncovers new cross-platform malware undetected by antivirus tools

After warning 9to5Mac last month about undetectable Mac malware hidden in a fake PDF converter site, Mosyle, a leader in Apple device management and security, has now uncovered a new infostealer. Dubbed ModStealer, the malware has remained invisible to all major antivirus engines since first appearing on VirusTotal nearly a month ago.

My favorite privacy features in iOS 26

In an earlier edition of Security Bite, I predicted that Apple would finally announce end-to-end encryption (E2EE) to the RCS Universal Profile at WWDC 2025. That didn't happen, but Apple did introduce two nice spam-protection tools along with a series of smaller updates designed to make the iPhone safer for everyone.

Apple quietly shipped one of its most practical security features yet

If you upgraded to iOS 26, you know the design changes and visual overhaul of Liquid Glass are undeniably impressive. But from a security perspective, one feature in particular has piqued my interest and seemingly gone under the radar: a new permission setting for wired accessories.

Mosyle identifies new Mac malware that evades detection through fake PDF conversion tool

Mosyle, a leader in Apple device management and security, has exclusively revealed to 9to5Mac details on a new Mac malware strain, dubbed "JSCoreRunner". The zero-day threat evaded all detections on VirusTotal at the time of discovery, spreading through a malicious PDF conversion site.