Apple malware variant puts users at risk

By
Follow google news

Targets Tibet activists.

A new twist on an old piece of Apple malware, named OSX/Tibet.C, has put the backdoor on users' radars again.

Apple malware variant puts users at risk

According to researchers at Mac security software company Intego, the malware is downloaded to computers unbeknownst to users via Java applets hosted on compromised websites.

The attack is known as a 'watering hole' because it baits victims without having to target them individually.

The trojan contacts a China-based command-and-control server which gives operators remote access.

Apple's operating system is typically malware free, although the password-stealing Flashback malware infected hundreds of thousands of machines last year.

Tibet.C exploits Java vulnerabilities which can be patched by downloading Java 7u25 and newer versions of the platform. 

This article originally appeared at scmagazineus.com

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Researchers find critical vulnerabilities in cloud-based password managers

Researchers find critical vulnerabilities in cloud-based password managers

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Victoria's whole-of-government CISO has left

Victoria's whole-of-government CISO has left

Woolworths splits infosec and physical security again

Woolworths splits infosec and physical security again

Log In

  |  Forgot your password?