Macworld Forums

Macworld Forums: Report: Trojan Horse found in the iOS App Store - Macworld Forums

Jump to content

  • (2 Pages)
  • +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

Report: Trojan Horse found in the iOS App Store

#1 User is offline   Macworld 

  • Story Poster
  • Group: MW Bot
  • Posts: 31,929
  • Joined: 30-November 07

Posted 05 July 2012 - 09:40 AM

Post your comments for Report: Trojan Horse found in the iOS App Store here
0

#2 User is offline   gronos 

  • Newbie
  • Pip
  • Group: New Members
  • Posts: 6
  • Joined: 15-July 11

  Posted 05 July 2012 - 10:02 AM

Find and Call is not there now, they must have been removing it rather than returning your e-mails!
0

#3 User is offline   billyok 

  • Member
  • PipPip
  • Group: Members
  • Posts: 56
  • Joined: 15-April 09

Posted 05 July 2012 - 10:18 AM

View Postgronos, on 05 July 2012 - 10:02 AM, said:

Find and Call is not there now, they must have been removing it rather than returning your e-mails!


Never a dull moment for Apple's one employee.
0

#4 User is offline   Derek 

  • Member
  • PipPip
  • Group: Members
  • Posts: 36
  • Joined: 11-February 10

  Posted 05 July 2012 - 11:25 AM

I can verify that 'find and call' was at the iOS app store as it comes up in the hot help while typing in the name.

IMHO: It is of grave concern that Apple did not catch the behavior of this malware before approving it for the iOS App Store. It's another kick in Apple's nuts, hopefully further awakening their security vigilance.
-1

#5 User is offline   markbyrn 

  • Member
  • Group: Macworld Insiders
  • Posts: 143
  • Joined: 18-May 11

  Posted 05 July 2012 - 11:39 AM

...Kaspersky was tipped off to the existence of the app by Russian...

Are we sure that Kaspersky black hats didn't pull this caper just to sell more AV and force Apple into the AV protection racket?
0

#6 User is offline   Photonerd 

  • Member
  • PipPip
  • Group: Members
  • Posts: 686
  • Joined: 31-March 05

  Posted 05 July 2012 - 11:41 AM

New Rule: stop throwing people who get caught with small amounts of Marijuana into prison, start throwing large-sclae phishers and spammers into prison. Reduces overcrowding and correctly identifies the more dangerous / criminal behavior.
Basking in the glow of iPad Retina goodness.
0

#7 User is offline   Derek 

  • Member
  • PipPip
  • Group: Members
  • Posts: 36
  • Joined: 11-February 10

Posted 05 July 2012 - 11:48 AM

View Postmarkbyrn, on 05 July 2012 - 11:39 AM, said:

...Kaspersky was tipped off to the existence of the app by Russian...

Are we sure that Kaspersky black hats didn't pull this caper just to sell more AV and force Apple into the AV protection racket?


From the source Kaspersky article:

Quote

Yesterday we were contacted by our partner MegaFon, one of the major mobile carriers in Russia.


Therefore, it appears unlikely that this malware was designed to tweak Apple. We know that Apple's vetting of apps has been tested in the past and FAILed. Mac security expert Dr. Charlie Miller successfully slipped one by Apple last year.

Giving Apple a swift kick now and again typically results in better quality. Apple is never perfect, but their attention to software security has increased exponentially since Symantec started the 'security through absurdity' anti-Apple security propaganda movement back in March, 2005. Kill the deceitful messenger but love the results.
0

#8 User is offline   muchospanish 

  • Member
  • Group: Macworld Insiders
  • Posts: 82
  • Joined: 30-January 10

  Posted 05 July 2012 - 12:11 PM

More from Kapersky: http://www.darkreadi...rchers-say.html

I'm looking forward to Mountain Lion sandboxing.
0

#9 User is offline   DlBetty 

  • Member
  • PipPip
  • Group: Members
  • Posts: 39
  • Joined: 02-October 11

Posted 05 July 2012 - 01:05 PM

View PostDerek, on 05 July 2012 - 11:25 AM, said:

I can verify that 'find and call' was at the iOS app store as it comes up in the hot help while typing in the name.

IMHO: It is of grave concern that Apple did not catch the behavior of this malware before approving it for the iOS App Store. It's another kick in Apple's nuts, hopefully further awakening their security vigilance.

It was the GOOGLE PLAY STORE TOO but not in the headline of course. READ please IMHO it's not just APPLE. Call Apple out like all of the cool kids do it seems.
0

#10 User is offline   DlBetty 

  • Member
  • PipPip
  • Group: Members
  • Posts: 39
  • Joined: 02-October 11

Posted 05 July 2012 - 01:06 PM

View Postgronos, on 05 July 2012 - 10:02 AM, said:

Find and Call is not there now, they must have been removing it rather than returning your e-mails!

"it’s way to both the Apple App Store and Google Play Store." Dump on Apple, perhaps read the article.
0

#11 User is offline   DlBetty 

  • Member
  • PipPip
  • Group: Members
  • Posts: 39
  • Joined: 02-October 11

Posted 05 July 2012 - 01:09 PM

View PostDerek, on 05 July 2012 - 11:48 AM, said:

View Postmarkbyrn, on 05 July 2012 - 11:39 AM, said:

...Kaspersky was tipped off to the existence of the app by Russian...

Are we sure that Kaspersky black hats didn't pull this caper just to sell more AV and force Apple into the AV protection racket?


From the source Kaspersky article:

Quote

Yesterday we were contacted by our partner MegaFon, one of the major mobile carriers in Russia.


Therefore, it appears unlikely that this malware was designed to tweak Apple. We know that Apple's vetting of apps has been tested in the past and FAILed. Mac security expert Dr. Charlie Miller successfully slipped one by Apple last year.

Giving Apple a swift kick now and again typically results in better quality. Apple is never perfect, but their attention to software security has increased exponentially since Symantec started the 'security through absurdity' anti-Apple security propaganda movement back in March, 2005. Kill the deceitful messenger but love the results.


The article says "it’s way to both the Apple App Store and Google Play Store."
0

#12 User is offline   DlBetty 

  • Member
  • PipPip
  • Group: Members
  • Posts: 39
  • Joined: 02-October 11

Posted 05 July 2012 - 01:10 PM

View PostMacworld, on 05 July 2012 - 09:40 AM, said:



Your article says "it’s way to both the Apple App Store and Google Play Store." So why is only Apple mentioned?
0

#13 User is offline   frd750 

  • Member
  • Group: Macworld Insiders
  • Posts: 106
  • Joined: 08-February 10

Posted 05 July 2012 - 02:24 PM

View PostDlBetty, on 05 July 2012 - 01:05 PM, said:

View PostDerek, on 05 July 2012 - 11:25 AM, said:

I can verify that 'find and call' was at the iOS app store as it comes up in the hot help while typing in the name.

IMHO: It is of grave concern that Apple did not catch the behavior of this malware before approving it for the iOS App Store. It's another kick in Apple's nuts, hopefully further awakening their security vigilance.

It was the GOOGLE PLAY STORE TOO but not in the headline of course. READ please IMHO it's not just APPLE. Call Apple out like all of the cool kids do it seems.


Yes , but Apple not Google is planning to make it difficult to run apps not vetted by Apple. Apple better get its act together on security before mountain is issued.
0

#14 User is offline   genovelle 

  • Member
  • PipPip
  • Group: Members
  • Posts: 69
  • Joined: 23-August 09

Posted 05 July 2012 - 02:36 PM

View PostDerek, on 05 July 2012 - 11:25 AM, said:

I can verify that 'find and call' was at the iOS app store as it comes up in the hot help while typing in the name.

IMHO: It is of grave concern that Apple did not catch the behavior of this malware before approving it for the iOS App Store. It's another kick in Apple's nuts, hopefully further awakening their security vigilance.


With the vast number of apps being submitted each week, the fact that this is the first app found to be malware when 30% has been found to be so on Google's Platform, I think that is amazing after 4 years.
0

Share this topic:


  • (2 Pages)
  • +
  • 1
  • 2
  • You cannot start a new topic
  • You cannot reply to this topic

2 User(s) are reading this topic
0 members, 2 guests, 0 anonymous users