Sophisticated 'Xagent' Malware for Stealing Passwords and iPhone Backups **w Targets - اخبار التقنية

ryan

العودة   ryan > اخبار التقنية

 
 
أدوات الموضوع انواع عرض الموضوع
  #1  
قديم 02-15-2017, 06:28 AM
ahlam1399 ahlam1399 غير متواجد حالياً
Administrator
 
تاريخ التسجيل: Sep 2012
المشاركات: 3,727,761
افتراضي Sophisticated 'Xagent' Malware for Stealing Passwords and iPhone Backups **w Targets

A new version of Xagent, Malware reportedly created by Russian hacking group APT28, has been discovered, and this version Targets Mac users.

As outlined in a blog post by antivirus company Bitdefender (via Ars Technica), Xagent has previously been used to infiltrate *******, iOS, Android, and Linux devices, but **w Macs are vulnerable to attack as well. This is the first version of Xagent that's believed to be able to infiltrate Macs.

Sophisticated 'Xagent' Malware Stealing Passwords
The Mac version of Xagent is described as a backdoor that can be customized to do things like log passwords, detect system configurations, execute files, take screenshots of the display, and access iOS Backups stored on the Mac.
The sample we are discussing today has been linked to the Mac OSX version of Xagent component from Sofacy/APT28/Sednit APT. This modular backdoor with advanced cyber-espionage capabilities is most likely planted on the system via the Komplex downloader.

Once successfully installed, the backdoor checks if a debugger is attached to the process. If it detects one, it terminates itself to prevent execution. Otherwise, it waits for an Internet connection before initiating communication with the C&C servers.

After the communication has been established, the payload starts the modules. Our preliminary analysis shows most of the C&C URLs impersonate Apple domains.
APT28 is the cyberespionage group that has been accused of hacking into the U.S. Democratic National Committee last year and interfering with the 2016 presidential election.

Bitdefender isn't entirely sure how the Mac version of Xagent is being distributed to users, but it could be spread via a macOS Malware downloader called Komplex, which exploits a vulnerability in the virus-like MacKeeper software. Research on the Malware is ongoing.

Mac users concerned about Xagent should avoid downloading anything that doesn't come from the Mac App Store or a well-k**wn developer.

**te: Due to the political nature of the discussion regarding this topic, the discussion thread is located in our Politics, Religion, Social Issues forum. All forum members and site visitors are welcome to read and follow the thread, but posting is limited to forum members with at least 100 posts.
Discuss this article in our forums

Sophisticated 'Xagent' Malware Stealing Passwords Sophisticated 'Xagent' Malware Stealing Passwords
Sophisticated 'Xagent' Malware Stealing Passwords

أكثر...

كلمات البحث

العاب ، برامج ، سيارات ، هاكات ، استايلات


رد مع اقتباس
 


تعليمات المشاركة
لا تستطيع إضافة مواضيع جديدة
لا تستطيع الرد على المواضيع
لا تستطيع إرفاق ملفات
لا تستطيع تعديل مشاركاتك

BB code is متاحة
كود [IMG] متاحة
كود HTML معطلة

الانتقال السريع


الساعة الآن 07:41 PM


Powered by vBulletin® Copyright ©2000 - 2026, Jelsoft Enterprises Ltd. TranZ By Almuhajir
This Forum used Arshfny Mod by islam servant