Mac trojan found hidden in PDF

Powered by SC Magazine
 

Mac malware mimick Windows attack handbook.

A Mac OS X trojan was found obfuscated as a PDF file, according to researchers at F-Secure.

A trojan dropper installed a backdoor program which could give attackers full control of Mac systems.

The remote command-and-control (C&C) server used to connect with infected machines was a bare Apache installation, F-Secure found.

The malware embedded PDF tactic was new for Mac malware, according to Sophos senior security adviser Chet Wisniewski.

"The PDF lure is a good trick to get people to install the trojan," he said. "You think you're opening a document, when you're installing malware."

"This exploit could be a one-off, but our suspicion is that the model has been established, and we will see more criminal gang activity," he said.

Windows was still the preferred target of cybercriminals because there were more machines to attack.

This article originally appeared at scmagazineus.com

Copyright © SC Magazine, US edition


Mac trojan found hidden in PDF
 
 
 
Top Stories
Myer CIO named retailer's new chief executive
Richard Umbers to lead data-driven retail strategy.
 
Empty terminals and mountains of data
Qantas CIO Luc Hennekens says no-one is safe from digital disruption.
 
BoQ takes $10m hit on Salesforce CRM
Regulatory hurdles end cloud pilot.
 
 
Sign up to receive iTnews email bulletins
   FOLLOW US...
Latest Comments
Polls
Who do you trust most to protect your private data?







   |   View results
Your bank
  35%
 
Your insurance company
  5%
 
A technology company (Google, Facebook et al)
  9%
 
Your telco, ISP or utility
  8%
 
A retailer (Coles, Woolworths et al)
  4%
 
A Federal Government agency (ATO, Centrelink etc)
  18%
 
An Australian law enforcement agency (AFP, ASIO et al)
  15%
 
A State Government agency (Health dept, etc)
  7%
TOTAL VOTES: 4140

Vote
Do you support the abolition of the Office of the Information Commissioner?

   |   View results
I support shutting down the OAIC.
  26%
 
I DON'T support shutting the OAIC.
  74%
TOTAL VOTES: 1412

Vote