Latest in Apple

Image credit:

Apple removes malware-infected apps from Chinese App Store

James Trew, @itstrew
September 21, 2015
Share
Tweet
Share

Sponsored Links

Last week we reported how a number of malware-ridden apps were found on the Chinese version of Apple's App Store. The iPhone-maker has since confirmed the offending apps have been removed. The malicious apps were reportedly created using a bogus version of Xcode (the developer tool for iOS apps) that snuck hidden, malicious features into genuine apps with a program called "XcodeGhost". Curiously, a tactic also considered by the CIA at one point. Exactly how many apps were affected is unclear, but popular titles in the country like WeChat, and car-hailing app Didi Kuaidione are reported to be on the list. Security firm Qihoo360 Technology is reporting at least 344 were removed from the store.

What's less clear is the impact to any users that were unlucky enough to download one of the infected apps while they were available. Palo Alto Networks Director of Threat Intelligence Ryan Olson claims the impact was likely negligible, with no reports data theft, or "other harm." Olson also points out, perhaps the real concern is that this attack demonstrates that Apple's App Store, and its famously rigorous approval process are far from immune to vulnerabilities, especially given that developers had no idea this was going on.

All products recommended by Engadget are selected by our editorial team, independent of our parent company. Some of our stories include affiliate links. If you buy something through one of these links, we may earn an affiliate commission.
Comment
Comments
Share
Tweet
Share

Popular on Engadget

Facebook envisions using holographics for super-slim VR glasses

Facebook envisions using holographics for super-slim VR glasses

View
100 million people watch YouTube on TVs each month

100 million people watch YouTube on TVs each month

View
PlayStation is the latest to join the Facebook ad boycott

PlayStation is the latest to join the Facebook ad boycott

View
Amazon-owned Ring is preparing its first smart light bulb

Amazon-owned Ring is preparing its first smart light bulb

View
House approves $100 billion in broadband funding for rural areas

House approves $100 billion in broadband funding for rural areas

View

From around the web

Page 1Page 1ear iconeye iconFill 23text filevr