Not a few dozen, more than 4,000 applications on the App Store has infected XcodeGhost, beware! From 36 to 85 malware-infected apps XcodeGhost earlier and now probably not "stay spend"? When recently, experts have confirmed the number of applications on the Apple App Store this malicious code has infected up to number 4,000. XcodeGhost has infected more than 4,000 applications on the App Store Tuesday (22/9/2015 ), mobile security vendor Appthority report that they have found 476 apps on the App Store XcodeGhost malware infection, among those who used mostly come from business customers. "We had a closer look at the data and begin tracking process applications XcodeGhost iOS malware infection since January 4/2015, with a significant increase by the time the present". XcodeGhost capable of stealing the contents of the conversation, open the URL, read / create data tables clipboard. In fact, the development of this fake tool can add malicious functions, but they seem to have missed, at least at this time. In addition, the researchers came from FireEye security firm also revealed that, in fact, infected apps on the App Store XcodeGhost not of dozens or hundreds, but this figure has touched thousands. To put it more precisely, on the App Store now has more than 4,000 applications this malware infection. The iOS apps containing malware XcodeGhost gather information about the device, then encode and upload that data on the server Control and command (C2) via HTTP protocol. Information systems and application information can be collected include: - Current time. - The name of the application currently infected. - Identification of the application bundle. - Device type and name devices in. - National Information and current language of the system. - existing UUID of the system. - Type circles. While Apple's servers have conducted strict controls to exclude applicants XcodeGhost infected user, but attacks still trying to connect "last breath" using the HTTP connection is not encrypted. HTTP session so often very vulnerable to "hijacking" by other attackers - of FireEye researchers said. In addition, security research center Palo Alto Networks also confirmed XcodeGhost dangerous actions more: - Show notification, fake login screen on the screen to steal account iCloud (ransom), and other personal information (emails, documents, photos, credit cards, ... ). - Automatic access the site without the permission of the user. - Read / write data from the machine's clipboard to steal personal information of users, eg password. Currently the company mobile security can not provide full names of applications on the App Store XcodeGhost malware infection. They hope that Apple will offer a more practical solution to alert the user that has infected application, immunity and recovery is complete.
đang được dịch, vui lòng đợi..