Cybersecurity firm Group-IB has discovered the first version of the trojan created to target iPhones. Notably, this malware is focusing on attacking devices of users in Vietnam and Thailand.
Illustration photo.
The Trojan, called GoldPickaxe, was distributed to iOS users via the TestFlight platform, a tool created by Apple to help developers distribute beta apps by sending a link to a select number of users to install, before releasing it to the public on the App Store. With TestFlight, developers can invite up to 10,000 testers to install their beta app.
GoldPickaxe can collect information such as SMS messages, FaceID, identification data... With this type of collected information, the hacker's goal is to attack and withdraw money from bank accounts and financial applications.
According to Group-IB, after Apple removed this trojan from TestFlight, hackers switched to using a distribution method through management software (MDM), often used to manage devices in businesses.
Regarding the appearance of the first trojan attacking Vietnamese iOS users, talking to PV VietNamNet, Mr. Vu Ngoc Son, Technology Director, Vietnam National Cyber Security Technology Company - NCS said that in reality, the risk of infection of the GoldPickaxe trojan is not high. The reason is that it is very difficult for normal users to install it using TestFlight or MDM, usually only Testers or company phones with administrators can install applications on behalf of users.
Therefore, if you want to install software in the above two ways, the hacker will have to "guide" the victim through many steps, the chance of success will be low. In fact, if you want to attack iOS users, hackers often choose to exploit vulnerabilities in the zero-click or one-click way, with that way, the hacker will not require the user to do much.
According to Mr. Vu Ngoc Son, to prevent this, users should absolutely not install applications from unreliable sources, only install from Apple's official application store, the AppStore.
(Source: Vietnamnet)
Source
Comment (0)