Windows Trojan re-configured for MacOS

Powered by SC Magazine
 

Rare find: Backdoor BlackHole RAT.

Security vendor Sophos has found an old Windows backdoor Trojan that has been reconfigured for MacOS X systems.

The trojan, called Blackhole Remote Access Trojan (RAT), appeared to be an early experiment, according to Sophos security advisor Chester Wisniewski.

“As even the malware itself admits, it is not yet finished, but it could be indicative of more underground programmers taking note of Apple's increasing market share,” the researcher said.

The Trojan relies on social engineering to attempt to slip past Apple’s application signing process, prompting a user to type in their Administrator Password in order to install it.

Wisniewski said the Trojan’s functions include placing text files on the desktop, sending commands to restart, shutdown or sleep, running arbitrary shell commands, creating a window that forces a user to reboot, and sending viewed URLs to an open website. 

Security vendors have long talked of the impending rise of malware for Macs, but so far the platform has failed to attract malware writers en masse.

Security giant McAfee had avoided releasing a MacOS X security product but last year released one.

Apple last year reportedly issued a patch that dealt with another Trojan, HellRTS.

Copyright © iTnews.com.au . All rights reserved.


Windows Trojan re-configured for MacOS
 
 
 
Top Stories
Parliament passes law to let ASIO tap entire internet
Greens effort to limit devices fails.
 
Business-focused Windows 10 brings back the Start menu
Microsoft skips 9 for the "greatest enterprise platform ever".
 
Feeling Shellshocked?
Stay up to date with patching for the Bash bug.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Which is the most prevalent cyber attack method your organisation faces?




   |   View results
Phishing and social engineering
  65%
 
Advanced persistent threats
  5%
 
Unpatched or unsupported software vulnerabilities
  11%
 
Denial of service attacks
  6%
 
Insider threats
  12%
TOTAL VOTES: 1387

Vote