WireLurker malware poses threat to Apple users

NetworksAsia staff
10 Nov 2014
00:00

Palo Alto Networks has uncovered a new family of Apple OS X and iOS malware exhibiting characteristics unseen in any previously discovered threats targeting Apple platforms.

This new family, dubbed WireLurker, marks a new era in malware across Apple’s desktop and mobile platforms, representing a potential threat to businesses, governments and Apple customers worldwide.

WireLurker represents the first known malware family that can infect installed iOS applications similar to how a traditional virus would. It is the first in-the-wild malware family that can install third-party applications on non-jailbroken iOS devices through enterprise provisioning.

It is also the second known malware family that attacks iOS devices through OS X via USB, and the first malware family to automate generation of malicious iOS applications through binary file replacement.

Following its initial observation in the wild in June by a developer at Tencent, Palo Alto Networks researchers have determined WireLurker’s potential impact, assessed the methods available to prevent, detect, contain and remediate the threat, and detailed the protections available for Palo Alto Networks customers.

Palo Alto Networks has released signatures to detect all WireLurker Command & Control communication traffic. It is recommended that customers using OS X or iOS devices deploy a strict policy for blocking WireLurker traffic using the Palo Alto Networks enterprise security platform. A full list of system recommendations, remediation techniques and best practices is included in the WireLurker report.

"WireLurker is unlike anything we’ve ever seen in terms of Apple iOS and OS X malware,” said Ryan Olson, Intelligence Director, Unit 42, Palo Alto Networks. “The techniques in use suggest that bad actors are getting more sophisticated when it comes to exploiting some of the world’s best-known desktop and mobile platforms. As such we have provided full protection to Palo Alto Networks customers and published a detailed report so others can assess the risk and take appropriate measures to protect themselves.”

Related content

Follow Telecom Asia Sport!
Comments
No Comments Yet! Be the first to share what you think!
This website uses cookies
This provides customers with a personalized experience and increases the efficiency of visiting the site, allowing us to provide the most efficient service. By using the website and accepting the terms of the policy, you consent to the use of cookies in accordance with the terms of this policy.