Last week we reported that hackers were going after Google Chrome users by disguising trojans as browser extensions. Now they're going after owners of that fancy new iPad, basically using the same email scheme as before but with a slight alteration. This time users are directed to download a software update by clicking on a link embedded in an email.
Naturally this attack is geared towards consumers new to the iPhone/iPod Touch community. Typically Apple doesn't link directly to an update via email, but rather pipes the upgrade alert through iTunes. Unfortunately, new consumers aren't quite hip to the Jobs Way, and thus get suckered into the malware-by-email scheme.
Once unsuspecting consumers (newbies) click on the email link, they are taken to a webpage that matches Apple's official website theme. Identified by BitDefender as Backdoor.Bifrose.AADY, this bit of malware injects itself into the explorer.exe process on the consumer's PC and opens up a backdoor for hacker entry, allowing unauthorized access to users files and the ability to seize the computer.
"Backdoor.Bifrose.AADY attempts to read the keys and serial numbers of the various software installed on the affected computer, while also logging the passwords to the victim’s ICQ, Messenger, POP3 mail accounts, and protected storage," the company said.
BitDefender said that Mac users remain unaffected by this piece of malware.
April 27, 2010
Subscribe to:
Post Comments (Atom)
No comments:
Post a Comment