{"id":5667,"date":"2015-09-21T22:28:40","date_gmt":"2015-09-22T02:28:40","guid":{"rendered":"http:\/\/www.chinesepen.org\/english\/?p=5667"},"modified":"2015-09-21T22:28:40","modified_gmt":"2015-09-22T02:28:40","slug":"apples-app-store-infected-with-xcodeghost-malware-in-china","status":"publish","type":"post","link":"https:\/\/www.chinesepen.org\/english\/apples-app-store-infected-with-xcodeghost-malware-in-china","title":{"rendered":"Apple&#8217;s App Store infected with XcodeGhost malware in China"},"content":{"rendered":"<p>21 September 2015<\/p>\n<p>Apple has said it is taking steps to remove malicious code added to a number of apps commonly used on iPhones and iPads in China.<\/p>\n<p>It is thought to be the first large-scale attack on Apple&#8217;s App Store.<\/p>\n<p>The hackers created a counterfeit version of Apple&#8217;s software for<!--more--> building iOS apps, which they persuaded developers to download.<\/p>\n<p>Apps compiled using the tool allow the attackers to steal data about users and send it to servers they control.<\/p>\n<p>Cybersecurity firm Palo Alto Networks &#8211; which has analysed the malware dubbed XcodeGhost &#8211; said the perpetrators would also be able to send fake alerts to infected devices to trick their owners into revealing information.<\/p>\n<p>It added they could also read and alter information in compromised devices&#8217; clipboards, which would potentially allow them to see logins copied to and from password management tools.<\/p>\n<p><a href=\"http:\/\/www.chinesepen.org\/english\/files\/2015\/09\/85659635_048fc7f6-6f00-455a-ad3c-b1f2577277e0.jpg\"><img loading=\"lazy\" decoding=\"async\" class=\"alignright size-medium wp-image-5668\" src=\"http:\/\/www.chinesepen.org\/english\/files\/2015\/09\/85659635_048fc7f6-6f00-455a-ad3c-b1f2577277e0-300x124.jpg\" alt=\"_85659635_048fc7f6-6f00-455a-ad3c-b1f2577277e0\" width=\"300\" height=\"124\" srcset=\"https:\/\/www.chinesepen.org\/english\/files\/2015\/09\/85659635_048fc7f6-6f00-455a-ad3c-b1f2577277e0-300x124.jpg 300w, https:\/\/www.chinesepen.org\/english\/files\/2015\/09\/85659635_048fc7f6-6f00-455a-ad3c-b1f2577277e0.jpg 624w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/a>WeChat is one of China&#8217;s most popular chat apps, and is also used outside the country to a lesser extent<\/p>\n<p>Infected applications includes Tencent&#8217;s hugely popular WeChat app, NetEase&#8217;s music downloading app and Didi Kuaidi&#8217;s Uber-like car hailing app.<\/p>\n<p>Some of the affected apps &#8211; including the business card scanner CamCard &#8211; are also available outside China.<\/p>\n<p>&#8220;We&#8217;ve removed the apps from the App Store that we know have been created with this counterfeit software,&#8221; said Apple spokeswoman Christine Monaghan.<br \/>\n&#8220;We are working with the developers to make sure they&#8217;re using the proper version of Xcode to rebuild their apps,&#8221; said Christine Monaghan.<\/p>\n<p>On its official WeChat blog, Tencent said the security issue affected an older version of its app &#8211; WeChat 6.2.5 &#8211; and that newer versions were not affected.<\/p>\n<p>It added that an initial investigation showed that no data theft or leakage of user information had occurred.<\/p>\n<p>Analysis: Dave Lee, North America technology reporter<\/p>\n<p>Apple China storeImage copyrightApple<\/p>\n<p>In Apple&#8217;s walled garden App Store, this sort of thing shouldn&#8217;t happen.<\/p>\n<p>The company goes to great lengths, and great expense, to sift through each and every submission to the store. Staff check for quality, usability and, above all else, security.<\/p>\n<p>The Apple App Store is generally considered a safe haven as the barrier to entry is high &#8211; there&#8217;s only been a handful of instances of malware found on iOS apps, compared to Google&#8217;s Play store which for a while was regarded as something of a &#8220;Wild West&#8221; for apps (until they introduced their own malware-scanning system too).<\/p>\n<p>It makes this attack all the more surprising, as it looks like two groups of supposedly informed people have been caught out.<\/p>\n<p>Firstly developers, who security researchers say were duped into using counterfeit software to build their apps, creating the right conditions for the malware to be applied.<\/p>\n<p>And secondly, Apple&#8217;s quality testers, who generally do a very good job in keeping out nasties, but in this case couldn&#8217;t detect the threat.<br \/>\n<a href=\"http:\/\/www.bbc.com\/news\/technology-34311203\">For detail please visit here<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>21 September 2015 Apple has said it is t &hellip; <a href=\"https:\/\/www.chinesepen.org\/english\/apples-app-store-infected-with-xcodeghost-malware-in-china\">Continue reading <span class=\"meta-nav\">&rarr;<\/span><\/a><\/p>\n","protected":false},"author":5,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"_mi_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"footnotes":""},"categories":[35,110],"tags":[1363,1362,37,1343,1348],"views":5579,"_links":{"self":[{"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/posts\/5667"}],"collection":[{"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/users\/5"}],"replies":[{"embeddable":true,"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/comments?post=5667"}],"version-history":[{"count":1,"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/posts\/5667\/revisions"}],"predecessor-version":[{"id":5669,"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/posts\/5667\/revisions\/5669"}],"wp:attachment":[{"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/media?parent=5667"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/categories?post=5667"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.chinesepen.org\/english\/wp-json\/wp\/v2\/tags?post=5667"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}