{"id":113705,"date":"2014-11-07T07:38:57","date_gmt":"2014-11-07T05:38:57","guid":{"rendered":"http:\/\/mybroadband.co.za\/news\/?p=113705"},"modified":"2014-11-07T07:40:46","modified_gmt":"2014-11-07T05:40:46","slug":"iphones-at-risk-from-apple-mac-malware","status":"publish","type":"post","link":"https:\/\/mybroadband.co.za\/news\/security\/113705-iphones-at-risk-from-apple-mac-malware.html","title":{"rendered":"iPhones at risk from Apple Mac malware"},"content":{"rendered":"<p>A newly discovered family of malware has the capacity to infect iPhones via Apple computers, posing a security threat to devices that have been largely resistant to cybercriminals, researchers said.<\/p>\n<p>The researchers at Palo Alto Networks, a cybersecurity firm, said the malware shows &#8220;characteristics unseen in any previously documented threats targeting Apple platforms.&#8221;<\/p>\n<p>It represents &#8220;a potential threat to businesses, governments and Apple customers worldwide,&#8221; they said.<\/p>\n<p>The malware, dubbed WireLurker, &#8220;is capable of stealing a variety of information from the mobile devices it infects and regularly requests updates from the attackers command and control server,&#8221; according to a report by the security firm, which added that &#8220;its creator&#8217;s ultimate goal is not yet clear.&#8221;<\/p>\n<p>Apple said it had taken steps to block the malicious software.<\/p>\n<p>Although hackers have been able to target &#8220;jailbroken&#8221; iPhones, which have been modified to accept unauthorized software, this new threat appears to pose a threat to devices that have not been modified, the security researchers said.<\/p>\n<p>&#8220;WireLurker is unlike anything we&#8217;ve ever seen in terms of Apple iOS and OS X malware,&#8221; said Palo Alto&#8217;s Ryan Olson.<\/p>\n<p>&#8220;The techniques in use suggest that bad actors are getting more sophisticated when it comes to exploiting some of the world&#8217;s best-known desktop and mobile platforms.&#8221;<\/p>\n<p>According to the researchers, WireLurker malware first infects a Mac computer, which uses the OS X operating system, and then installs itself on iOS devices &#8212; iPads or iPhones &#8212; when they are connected to the computers via USB ports.<\/p>\n<p>The malware was traced back to a third-party Chinese app store, which had 467 infected applications downloaded over 356,104 times, potentially affecting hundreds of thousands of users.<\/p>\n<p>&#8220;WireLurker monitors any iOS device connected via USB with an infected OS X computer and installs downloaded third-party applications or automatically generated malicious applications onto the device, regardless of whether it is jailbroken,&#8221; a report by the security firm said.<\/p>\n<p>&#8220;This is the reason we call it &#8216;wire lurker.&#8217; Researchers have demonstrated similar methods to attack non-jailbroken devices before; however, this malware combines a number of techniques to successfully realize a new breed of threat to all iOS devices.&#8221;<\/p>\n<p>Apple, in a statement to AFP, said it had acted to block the malware.<\/p>\n<p>&#8220;We are aware of malicious software available from a download site aimed at users in China, and we&#8217;ve blocked the identified apps to prevent them from launching,&#8221; the company said.<\/p>\n<p>&#8220;As always, we recommend that users download and install software from trusted sources.&#8221;<\/p>\n<p>Another security researcher, Jonathan Zdziarski, said the new malware suggests a potentially large security issue for Apple devices.<\/p>\n<p>&#8220;The bigger issue here is not WireLurker itself,&#8221; Zdziarski said in a blog post.<\/p>\n<p>&#8220;The real issue is that the design of iOS&#8217; pairing mechanism allows for more sophisticated variants of this approach to easily be weaponized,&#8221; he said.<\/p>\n<p>&#8220;While WireLurker appears fairly amateur, an NSA or a GCHQ, or any other sophisticated attacker could easily incorporate a much more effective (and dangerous) attack like this.&#8221;<\/p>\n<h3 class=\"my-4\">More security news<\/h3>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/113593-100-failure-rate-for-sa-law-enforcement-internet-data-requests.html\">100% failure rate for SA law enforcement Internet data requests<\/a><\/strong><\/p>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/113471-beware-of-whatsapp-updates.html\">Beware of WhatsApp updates<\/a><\/strong><\/p>\n<p><strong><a href=\"http:\/\/mybroadband.co.za\/news\/security\/113343-china-to-launch-quantum-communication-network.html\">China to launch quantum communication network<\/a><\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>A newly discovered family of malware has the capacity to infect iPhones via Apple computers, posing a security threat to devices that have been largely resistant to cybercriminals, researchers said<\/p>\n","protected":false},"author":35,"featured_media":86255,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[27],"tags":[36,605,12459,801],"class_list":["post-113705","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","tag-active","tag-apple","tag-imac","tag-malware"],"_links":{"self":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/113705"}],"collection":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/users\/35"}],"replies":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/comments?post=113705"}],"version-history":[{"count":0,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/posts\/113705\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media\/86255"}],"wp:attachment":[{"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/media?parent=113705"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/categories?post=113705"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/mybroadband.co.za\/news\/wp-json\/wp\/v2\/tags?post=113705"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}