US EUROPE AFRICA ASIA 中文
Business / Technology

Apple's iOS App Store suffers first major attack

(Agencies) Updated: 2015-09-21 09:32

Apple's iOS App Store suffers first major attack

A sales assistant shows features of iOS 9 on an Apple iMac at an Apple reseller shop in Bangkok September 18, 2015.[Photo/Agencies]

Apple Inc said on Sunday it is cleaning up its iOS App Store to remove malicious iPhone and iPad programs identified in the first large-scale attack on the popular mobile software outlet.

The company disclosed the effort after several cyber security firms reported finding a malicious program dubbed XcodeGhost that was embedded in hundreds of legitimate apps.

It is the first reported case of large numbers of malicious software programs making their way past Apple's stringent app review process. Prior to this attack, a total of just five malicious apps had ever been found in the App Store, according to cyber security firm Palo Alto Networks Inc.

The hackers embedded the malicious code in these apps by convincing developers of legitimate software to use a tainted, counterfeit version of Apple's software for creating iOS and Mac apps, which is known as Xcode, Apple said.

"We've removed the apps from the App Store that we know have been created with this counterfeit software," Apple spokeswoman Christine Monaghan said in an email. "We are working with the developers to make sure they're using the proper version of Xcode to rebuild their apps."

She did not say what steps iPhone and iPad users could take to determine whether their devices were infected.

Palo Alto Networks Director of Threat Intelligence Ryan Olson said the malware had limited functionality and his firm had uncovered no examples of data theft or other harm as a result of the attack.

Still, he said it was "a pretty big deal" because it showed that the App Store could be compromised if hackers infected machines of software developers writing legitimate apps. Other attackers may copy that approach, which is hard to defend against, he said.

"Developers are now a huge target," he said.

Researchers said infected apps included Tencent Holdings Ltd's popular mobile chat app WeChat, car-hailing app Didi Kuaidi and a music app from Internet portal NetEase Inc.

The tainted version of Xcode was downloaded from a server in China that developers may have used because it allowed for faster downloads than using Apple's US servers, Olson said.

Chinese security firm Qihoo360 Technology Co said on its blog that it had uncovered 344 apps tainted with XcodeGhost.

Apple declined to say how many apps it had uncovered.

Hot Topics

Editor's Picks
...
主站蜘蛛池模板: 粗壮挺进邻居人妻| 337p日本欧洲亚洲大胆精品555588 | 久久精品国产精品亚洲艾草网| 看国产一级毛片| 国产亚洲精品美女久久久久| 456亚洲视频| 好硬好爽好湿好深视频| 久久免费公开视频| 欧美成人黄色片| 免费中文字幕不卡视频| 色综合天天综合中文网| 国产精品99久久久精品无码| a级成人高清毛片| 成年人免费观看视频网站| 久久这里只精品热免费99| 欧美色图综合网| 免费视频中文字幕| 蜜桃一区二区三区| 国产浮力第一影院| 91大神在线观看视频| 好痛太长太深弄死我了视频| 久久99精品福利久久久| 最近中文字幕高清2019中文字幕 | 女人扒开屁股爽桶30分钟| 久久99精品久久久久久首页| 最近的中文字幕大全免费版| 亚洲精品美女久久777777| 精品日韩在线视频| 国产做无码视频在线观看| 亚洲宅男精品一区在线观看| 在线天堂中文www官网| 一级在线|欧洲| 无码精品人妻一区二区三区漫画| 五月婷婷开心综合| 欧美换爱交换乱理伦片不卡片| 人人狠狠综合久久亚洲| 精品无码国产自产拍在线观看| 国产人妖在线视频| 国产香蕉精品视频| 国产精品国色综合久久| 97麻豆精品国产自产在线观看|