What You Need to K**w About iOS Malware XcodeGhost - اخبار التقنية

ryan

العودة   ryan > اخبار التقنية

إضافة رد
 
أدوات الموضوع انواع عرض الموضوع
  #1  
قديم 09-20-2015, 08:37 PM
ahlam1399 ahlam1399 غير متواجد حالياً
Administrator
 
تاريخ التسجيل: Sep 2012
المشاركات: 3,727,761
افتراضي What You Need to K**w About iOS Malware XcodeGhost

What Need K**w About MalwarePalo Alto Networks has published details About new Chinese Malware called XcodeGhost. MacRumors has created a FAQ so you can learn more About the Malware and how to keep your iOS devices protected.

What is XcodeGhost?
XcodeGhost is a new iOS Malware arising from a malicious version of Xcode, Apple's official tool for developing iOS and OS X apps.

How is XcodeGhost distributed?
A malicious version of Xcode was uploaded to Chinese cloud file sharing service Baidu and downloaded by some iOS developers in China.

Chinese developers then unk**wingly compile iOS apps using the modified Xcode IDE and distribute those infected apps through the App Store. Those apps then managed to pass through Apple's code review process, enabling iOS users to install or update the infected apps on their devices.

Which devices are affected?
iPhone, iPad and iPod touch models running an iOS version compatible with any of the infected apps. The Malware affects both stock and jailbroken devices.

Which apps are affected?
Palo Alto Networks has shared a full list of 39 infected iOS apps, including WeChat, NetEase Cloud Music, WinZip, Didi Chuxing, Railway 12306, China Unicom Mobile ****** and Tonghuashun.

How many users are affected?
XcodeGhost potentially affects more than 500 million iOS users, primarily because messaging app WeChat is very popular in China and the Asia-Pacific region.

Which u**fficial versions of Xcode are affected?
All u**fficial versions between Xcode 6.1 and Xcode 6.4.

How does XcodeGhost put my iOS devices at risk?
iOS apps infected with XcodeGhost Malware can and do collect information About devices and then encrypt and upload that data to command and control (C2) servers run by attackers through the HTTP protocol. The system and app information that can be collected includes:

Current time
Current infected app?s name
The app?s bundle identifier
Current device?s name and type
Current system?s language and country
Current device?s UUID
Network type

Palo Alto Networks also discovered that infected iOS apps can receive commands from the attacker through the C2 server to perform the following actions:

Prompt a fake alert dialog to phish user credentials;
Hijack opening specific URLs based on their scheme, which could allow for exploitation of vulnerabilities in the iOS system or other iOS apps;
Read and write data in the user?s clipboard, which could be used to read the user?s password if that password is copied from a password management tool.

Can XcodeGhost affect users outside of China?
Yes. Some of the iOS apps infected with XcodeGhost Malware are available on the App Store in countries outside of China. CamCard, for example, is a popular business card reader and scanner app available in the United States and several other countries, while WeChat is a popular messaging app in the Asia-Pacific region.

Why would some Chinese developers download Xcode from Baidu?
Xcode is a large file that can take a long time to download from Apple's servers in China, leading some developers to download Xcode from u**fficial sources.

How are Apple and Chinese developers dealing with XcodeGhost?
Palo Alto Networks claims that it is cooperating with Apple on the issue, while multiple developers have updated their apps to remove the malware.

How do I protect myself against XcodeGhost?
iOS users should immediately uninstall any infected iOS app listed here on their devices, or update to a newer version that has ******* the malware. Resetting your iCloud password, and any other passwords inputted on your iOS device, is also strongly recommended as a precautionary measure.

Developers should install official versions of Xcode 7 or Xcode 7.1 beta from Apple's website for free and avoid downloading the software from u**fficial sources.


What Need K**w About Malware

What Need K**w About Malware

What Need K**w About Malware

What Need K**w About Malware
What Need K**w About MalwareWhat Need K**w About MalwareWhat Need K**w About MalwareWhat Need K**w About MalwareWhat Need K**w About Malware What Need K**w About Malware
What Need K**w About Malware

أكثر...

كلمات البحث

العاب ، برامج ، سيارات ، هاكات ، استايلات


رد مع اقتباس
إضافة رد


تعليمات المشاركة
لا تستطيع إضافة مواضيع جديدة
لا تستطيع الرد على المواضيع
لا تستطيع إرفاق ملفات
لا تستطيع تعديل مشاركاتك

BB code is متاحة
كود [IMG] متاحة
كود HTML معطلة

الانتقال السريع


الساعة الآن 04:37 AM


Powered by vBulletin® Copyright ©2000 - 2026, Jelsoft Enterprises Ltd. TranZ By Almuhajir
This Forum used Arshfny Mod by islam servant