Malware are always been part of
any computer today, they are consider to a disease in any system that computer run.
And today smartphones also are been affected by this malwares. From Android
power to iOS device, malwares always find a way to attack.
Today, a new iOS malware named “AceDeceiver”,
which been uncovered by a security firm “Palo Alto Network”. According to them
this new malware, targets any non-jailbroken iOS device via a flaw in Apples
DRM mechanism.
This new threat manages to get
into an iOS device without having to dupe any certification process, said by
Palo Alto Networks.
Palo Alto Networks blog post
tells “What makes AceDeceiver different from previous iOS malware is that
instead of abusing enterprise certificates as some iOS malware has over the
past two years, AceDeceiver manages to install itself without any enterprise
certificate at all.”
This new malware “AceDeceiver” is
abusing the a fatal flaw in Apple’s DRM protection mechanism named FairPlay via
technique called “FairPlay Man in the Middle”, which will enable the attackers
to install malicious apps in a iOS device while bypassing Apple’s built in
security.
Users of iOS device can’t know
whether they infected or not, only it tells that a new app icon will appear in
the home screen.
Between July 2015 and February
2016 there are three different iOS apps in AceDeceiver family were in the Apple’s
App Store, which all of them claims to be just an ordinary wallpaper.
Palo Alto notes that since this
three apps had been remove from the App Store, still it could do serious
damage. Apple just clean up their App Store back in February for this apps.
AceDeceiver just targeting those
iOS device in China yet, said by Palo Alto Networks. Also they have notified
Apple about this serious malware, but no patched yet release.
0 comments:
Post a Comment