Breaking News

SAMA Expands CPU Cooling Lineup with A60 and A40 Series Air Coolers for Gaming and Creator PCs The Lockerstor 12R Pro Gen2 and 16R Pro Gen2 are Here! TRUSTA Highlights SSD Power Efficiency for AI Servers at OCP APAC 2025 XPG Launches VALOR NANO Compact Cases with the All-New PYMCORE SFX PSU Speedlink announces illuminated mechanical 60% gaming keyboard

logo

  • Share Us
    • Facebook
    • Twitter
  • Home
  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map

Search form

 WireLurker Malware Targets  Apple Devices

WireLurker Malware Targets Apple Devices

Enterprise & IT Nov 6,2014 0

Researchers at Palo Alto Networks have discoverd a new family of iOS and OS X malware distributed through trojanized and repackaged Apple OS applications. This new family, dubbed WireLurker, can infect installed iOS applications similar to how a traditional virus would, as it can install third-party applications on non-jailbroken iOS devices through enterprise provisioning. The malware attacks iOS devices through OS X via USB and generates of malicious iOS applications through binary file replacement.

Palo Alto analyzed three versions of WireLurker.

If someone downloaded a Mac OS X desktop application from Maiyadi, WireLurker came along with it. WireLurker then waits for when an iOS device is connected by a USB cable. A second version of WireLurker checks if the Apple device was jailbroken -- if it allows users to run applications not approved by Apple. Then it would look to see if applications such as Taobao, Alipay or Meitu, a photo editing application, were installed. If so, it would copy the application to the desktop Mac, infect it with WireLurker and copy it back to the device.

But a third iteration of WireLurker targets iOS devices that are not jailbroken as well. In that version, WireLurker used a digital certificate that Apple issues to enterprise developers so they can run their own applications in-house that do not appear on the App Store.

Some 467 Mac OS X applications offered on a Chinese third-party application store called Maiyadi were found to have been seeded with WireLurker, including "The Sims 3," and "Pro Evolution Soccer 2014," according to Palo Alto’s research paper.

Over the last six months, those applications and others have been downloaded 356,104 times and may have impacted hundreds of thousands of users, a firm's paper said.

Palo Alto Networks has released signatures to detect all WireLurker Command & Control communication traffic. The firm recommended that customers using OS X or iOS devices deploy a strict policy for blocking WireLurker traffic using the Palo Alto Networks enterprise security platform.

Palo Alto Networks has notified Apple about the malware a couple weeks ago.

"We are aware of malicious software available from a download site aimed at users in China, and we?ve blocked the identified apps to prevent them from launching," Apple said. "As always, we recommend that users download and install software from trusted sources."

Tags: malwareApple
Previous Post
Acer Reports Q3 Profit
Next Post
Lenovo Posts Second Quarter Profit

Related Posts

  • Apple unveils Mac Studio featuring M4 Max and new M3 Ultra

  • Apple introduces iPad Air with powerful M3 chip and new Magic Keyboard

  • Apple debuts iPhone 16e

  • Apple introduces M4 Pro and M4 Max and new MacBook Pro

  • Apple unveils the new iMac with M4, supercharged by Apple Intelligence and available in fresh colors

  • Apple introduces powerful new iPad mini built for Apple Intelligence

  • Apple expands Self Service Repair Diagnostics support to Europe

  • Canon developing new RF-S 7.8mm F4 STM DUAL lens for EOS R7 camera for recording spatial video for Apple Vision Pro

Latest News

SAMA Expands CPU Cooling Lineup with A60 and A40 Series Air Coolers for Gaming and Creator PCs
Cooling Systems

SAMA Expands CPU Cooling Lineup with A60 and A40 Series Air Coolers for Gaming and Creator PCs

The Lockerstor 12R Pro Gen2 and 16R Pro Gen2 are Here!
Enterprise & IT

The Lockerstor 12R Pro Gen2 and 16R Pro Gen2 are Here!

TRUSTA Highlights SSD Power Efficiency for AI Servers at OCP APAC 2025
Enterprise & IT

TRUSTA Highlights SSD Power Efficiency for AI Servers at OCP APAC 2025

XPG Launches VALOR NANO Compact Cases with the All-New PYMCORE SFX PSU
Cooling Systems

XPG Launches VALOR NANO Compact Cases with the All-New PYMCORE SFX PSU

Speedlink announces illuminated mechanical 60% gaming keyboard
PC components

Speedlink announces illuminated mechanical 60% gaming keyboard

Popular Reviews

be quiet! Light Loop 360mm

be quiet! Light Loop 360mm

be quiet! Dark Mount Keyboard

be quiet! Dark Mount Keyboard

be quiet! Light Mount Keyboard

be quiet! Light Mount Keyboard

Noctua NH-D15 G2

Noctua NH-D15 G2

Soundpeats Pop Clip

Soundpeats Pop Clip

be quiet! Light Base 600 LX

be quiet! Light Base 600 LX

be quiet! Pure Base 501

be quiet! Pure Base 501

Terramaster F8-SSD

Terramaster F8-SSD

Main menu

  • Home
  • News
  • Reviews
  • Essays
  • Forum
  • Legacy
  • About
    • Submit News

    • Contact Us
    • Privacy

    • Promotion
    • Advertise

    • RSS Feed
    • Site Map
  • About
  • Privacy
  • Contact Us
  • Promotional Opportunities @ CdrInfo.com
  • Advertise on out site
  • Submit your News to our site
  • RSS Feed