US EUROPE AFRICA ASIA 中文
    Business / Technology

    Apple's iOS App Store suffers first major attack

    (Agencies) Updated: 2015-09-21 09:32

    Apple's iOS App Store suffers first major attack

    A sales assistant shows features of iOS 9 on an Apple iMac at an Apple reseller shop in Bangkok September 18, 2015.[Photo/Agencies]

    Apple Inc said on Sunday it is cleaning up its iOS App Store to remove malicious iPhone and iPad programs identified in the first large-scale attack on the popular mobile software outlet.

    The company disclosed the effort after several cyber security firms reported finding a malicious program dubbed XcodeGhost that was embedded in hundreds of legitimate apps.

    It is the first reported case of large numbers of malicious software programs making their way past Apple's stringent app review process. Prior to this attack, a total of just five malicious apps had ever been found in the App Store, according to cyber security firm Palo Alto Networks Inc.

    The hackers embedded the malicious code in these apps by convincing developers of legitimate software to use a tainted, counterfeit version of Apple's software for creating iOS and Mac apps, which is known as Xcode, Apple said.

    "We've removed the apps from the App Store that we know have been created with this counterfeit software," Apple spokeswoman Christine Monaghan said in an email. "We are working with the developers to make sure they're using the proper version of Xcode to rebuild their apps."

    She did not say what steps iPhone and iPad users could take to determine whether their devices were infected.

    Palo Alto Networks Director of Threat Intelligence Ryan Olson said the malware had limited functionality and his firm had uncovered no examples of data theft or other harm as a result of the attack.

    Still, he said it was "a pretty big deal" because it showed that the App Store could be compromised if hackers infected machines of software developers writing legitimate apps. Other attackers may copy that approach, which is hard to defend against, he said.

    "Developers are now a huge target," he said.

    Researchers said infected apps included Tencent Holdings Ltd's popular mobile chat app WeChat, car-hailing app Didi Kuaidi and a music app from Internet portal NetEase Inc.

    The tainted version of Xcode was downloaded from a server in China that developers may have used because it allowed for faster downloads than using Apple's US servers, Olson said.

    Chinese security firm Qihoo360 Technology Co said on its blog that it had uncovered 344 apps tainted with XcodeGhost.

    Apple declined to say how many apps it had uncovered.

    Hot Topics

    Editor's Picks
    ...
    青春草无码精品视频在线观| 亚洲精品无码高潮喷水在线| 亚洲午夜福利AV一区二区无码| 特级小箩利无码毛片| 亚洲av无码一区二区三区乱子伦| 亚洲国产av无码精品| 日韩av无码久久精品免费| 亚洲一日韩欧美中文字幕欧美日韩在线精品一区二 | 91天日语中文字幕在线观看| 免费无码午夜福利片| 无码日韩人妻精品久久蜜桃| 亚洲视频无码高清在线| 最近中文字幕在线| 无码中文字幕日韩专区视频| 亚洲高清无码综合性爱视频| 国产羞羞的视频在线观看 国产一级无码视频在线| 久久久久av无码免费网| 亚洲伊人久久综合中文成人网 | 亚洲中文字幕一二三四区苍井空 | 精品无人区无码乱码大片国产| 亚洲精品无码成人片久久| 无码人妻一区二区三区一| 最近免费中文字幕大全免费版视频| 亚洲中文字幕无码中文字在线| 国产高清无码视频| 国产精品三级在线观看无码| 无码日韩精品一区二区免费暖暖| 四虎影视无码永久免费| 亚洲欧洲中文日韩久久AV乱码| 亚洲精品乱码久久久久久中文字幕| 亚洲综合中文字幕无线码| 亚洲中文字幕无码爆乳av中文| 亚洲AV无码之日韩精品| 亚洲人成无码久久电影网站| 亚洲Av无码国产情品久久| 日本妇人成熟免费中文字幕| 亚洲va中文字幕无码久久不卡| 亚洲中文字幕在线第六区| 中文字幕精品一区影音先锋| 最近中文字幕完整版免费高清| 亚洲国产午夜中文字幕精品黄网站|