

A number of apps found on Apple Inc.’s Mac App Store are alleged to be spying on users and stealing their data, according to a report from security firm Malwarebytes Inc.
Leading the list of apps is a tool called Adware Doctor, an app that claims to be the “best app” to remove a variety of common adware threats which target Mac users. Security researcher Patrick Wardle noted that the app deceptively exfiltrates private data, including browser histories, and then sends it to a remote server in China.
Spyware apps making their way into app stores are not unique, but most are obscure and rarely used. The opposite is the case with Adware Doctor. Before it was removed by Apple during the week, it rankedg as the fourth most popular paid app in the Mac App Store, meaning it potentially has an installed user base will into the millions.
Also included on the initial list:
Since the initial report, another app with similar alleged data-stealing capabilities has since come to light, with 9to5Mac naming Dr. Unarchiver as allegedly stealing data.
“After extracting a zip file with the app, it offered an option to ‘Quick Clean Junk Files’. Selecting ‘Scan’ launched an open dialog with the home directory selected, this is how the app gets access to a user’s home directory, which it needs in order to collect the history files from browsers.” the report noted. “After allowing access to the home directory, the app proceeded to collect the private data and upload it to their servers (we blocked that with a proxy).”
The 9to5Mac report went on to claim that Dr. Unarchiver, Dr. Cleaner and others are being distributed by security firm Trend Micro Inc.
Since the apps are no longer in the Mac App Store, SiliconANGLE can’t confirm that they’re from Trend Micro. But an app called Dr. Playback is currently listed in the Google Play Store as coming from the company.
SiliconANGLE asked Trend Micro to comment on the report and will update this post if it responds.
THANK YOU