Apple
Malware authors have spammed Mac forums with links for pornographic websites
R E L A T E D   C O N T E N T

Free email newsletters




ADVERTISEMENT

Phishing Trojan targets Mac OS X

Fake codec delivers Mac malware

Shaun Nichols in California, vnunet.com 01 Nov 2007
ADVERTISEMENT

Security vendor Intego claims to have uncovered a new Trojan attack that targets Apple's OS X operating system.

The OSX.RSPlug.A Trojan disguises itself as a video codec that offers access to a pornographic video.

Intego said that malware authors have spammed Mac forums with links for pornographic websites hosting the malware.

Users attempting to install the codec receive a piece of malware classified as a 'DNS Changer' which modifies the way OS X handles the DNS requests used to link numerical IP addresses to web URLs.

The tool allows the attackers to redirect web traffic. Users attempting to visit PayPal, eBay or certain banking sites, for instance, will be directed to a phishing website instead.

If confirmed, the Trojan would be the first piece of truly malicious software to be targeted at OS X.

Researchers have previously developed OS X attacks and exploits, but these were largely proof-of-concept attacks that lacked a malicious payload.

While security experts agree that such malware would pose a very serious threat to Mac users, it remains unclear just how far the reported Trojan has spread.

Early on Wednesday morning, representatives for McAfee, Symantec and Trend Micro told vnunet .com that their researchers had been unable to find the Trojan in the wild or obtain a sample from Intego.

A spokesperson for Symantec suggested that Intego "has a tendency to over-hype things".

UPDATE: McAfee has confirmed the existence of the OSX.RSPlug.A Trojan and reported that it is spreading through fake codec sites in addition to the porn website.

OS X LeopardOpening weekend best ever for MacOS  31 Oct 2007
OS X 10.5 LeopardDevelopers claim Java 6 absent from new Apple OS  30 Oct 2007
Apple iPhoneAll the latest news on Apple's iPhone  18 Dec 2007

All Hacking

Like this story? Spread the news by clicking below:

Post this to Delicious del.icio.us    Post this to Digg Digg this    Post this to reddit reddit!

Permalink for this story
R E A D E R   C O M M E N T S

M A R K E T P L A C E
Sponsored links
F E A T U R E D   J O B S
Telford, Shropshire, United Kingdom | EDS
EDS are currently looking to recruit a PMO Support Analyst to join our Project Management Defence team in Telford, Shropshire. Summary: Within DII Service Management. To perform the PMO function for SM Service Introduction. This ... more >
Reading, Berkshire, United Kingdom | EDS
Position # 396477 Environment Support Engineer Location - Reading Job Description: There is an initial requirement an Environment Support Engineer to provide support and maintenance for the development environments within ATLAS. This role encompases many ... more >
London, United Kingdom | Deloitte
Technology and Systems Consulting Event - LondonWith the right balance, you'll achieve great things. Join our Consulting practice and have the opportunity to balance your technical and business consulting skills to bring out the best ... more >
Canary Wharf, Greater London, United Kingdom | EDS
Position # 398441 Responsibilities - Testing Consultant * Under broad direction, interacts with EDS project teams and clients to gain an understanding of the business environment, technical context, and testing objectives for a project as ... more >
More job opportunities