UPDATED 08:07 EST / NOVEMBER 06 2014

Palo Alto Networks NEWS

New malware found targeting Apple users in China

Palo Alto Networks

Palo Alto Networks

Palo Alto Networks, a security company, published a new research paper on November 5, which documents a new family of malware called WireLurker affecting Apple devices.

The malware attack originated from a Chinese third-party app store, and has mainly affected users within China. WireLurker can collect information like call logs and phone book contacts on Apple mobile devices; however, apart from making off with this information, it isn’t clear what the attacks’ objective is.

Ryan Olson, intelligence director for Palo Alto Network’s Unit 42, the company’s threat intelligence branch said, “We think we sort of caught someone developing the attack, and they haven’t gotten to the point of launching the full attack. From our perspective, it still looks like an information gathering operation”.

Palo Alto Networks’ report has stated “WireLurker was used to trojanize 467 OS X applications on the Maiyadi App Store, a third-party Mac application store in China. In the past six months, these 467 infected applications were downloaded over 356,104 times and may have impacted hundreds of thousands of users”. The top downloaded apps include The Sims 3, International Snooker 2012 and Pro Evolution 2014.

The malware was able to spread through infected apps that were uploaded to the apps store. These were then downloaded onto Mac computers.

The report states, “WireLurker monitors any iOS device connected via USB with an infected OS X computer and installs downloaded third-party applications or automatically generated malicious applications onto the device, regardless of whether it is jailbroken. This is the reason we call it ‘wire lurker’”.

Regardless of the fact that the malware seems to only be coming from Chinese sources the best way to avoid being infected is to only use trusted sources like the Mac App Store to download your apps.

The issue has been reported to Apple.

photo credit: Stephan Geyer via photopin cc

A message from John Furrier, co-founder of SiliconANGLE:

Support our mission to keep content open and free by engaging with theCUBE community. Join theCUBE’s Alumni Trust Network, where technology leaders connect, share intelligence and create opportunities.

  • 15M+ viewers of theCUBE videos, powering conversations across AI, cloud, cybersecurity and more
  • 11.4k+ theCUBE alumni — Connect with more than 11,400 tech and business leaders shaping the future through a unique trusted-based network.
About SiliconANGLE Media
SiliconANGLE Media is a recognized leader in digital media innovation, uniting breakthrough technology, strategic insights and real-time audience engagement. As the parent company of SiliconANGLE, theCUBE Network, theCUBE Research, CUBE365, theCUBE AI and theCUBE SuperStudios — with flagship locations in Silicon Valley and the New York Stock Exchange — SiliconANGLE Media operates at the intersection of media, technology and AI.

Founded by tech visionaries John Furrier and Dave Vellante, SiliconANGLE Media has built a dynamic ecosystem of industry-leading digital media brands that reach 15+ million elite tech professionals. Our new proprietary theCUBE AI Video Cloud is breaking ground in audience interaction, leveraging theCUBEai.com neural network to help technology companies make data-driven decisions and stay at the forefront of industry conversations.