Skip to main content

Apple allowed spyware posing as anti-malware tool into its Mac App Store

Apple MacBook Pro OLED with Touch Bar
Malarie Gokey/Digital Trends

One of the top paid utilities in the Mac App Store that claims to protect your Apple computer against malware is actually spyware in disguise that does just the opposite. The app, Adware Doctor, retails for $5 on Apple’s online storefront, and security researchers discovered that the malicious app actually collects your browsing history across the Safari, Chrome, and Firefox browsers and sends that data to a China-based server.

Originally, the app was posed as Adware Medic, sharing a similar name to the AdwareMedic app that was acquired by Malwarebytes, forcing Apple to remove the copycat. However, after it changed its name to Adware Doctor, Apple allowed the app back into the Mac App Store, and the app has garnered a number of likely fake five-star reviews. Security researcher Patrick Wardle with Privacy 1st claimed that he notified Apple about the app’s malicious behavior, according to a report on 9to5 Mac. Apple removed the app after numerous tech publications reported on the app’s behavior on Friday, September 7.

In addition to sending your browsing history to China, Adware Doctor also has access to your iTunes search history as well as other apps that are installed on the Mac. Because it poses as an app designed to scan your Mac for malware and spyware, Adware Doctor was able to overcome the sandbox protections on the Mac. Wardle discovered that the app requested universal access on first run, which gave it access to information found from within other apps, like browsing history data on Safari. Apple claims that the release of MacOS Mojave this fall will bring new privacy protections designed to prevent apps like Adware Doctor from accessing Safari browsing history.

However, Wardle noted that the app does actually clear your browser of adware, and the app’s data collection stopped a few days ago, PCMag reported. 9to5 Mac reported that the server in China is now offline, but there’s still a chance it could resume operation.

Adware Doctor’s entry in Apple’s official Mac App Store should be cause for concern for consumers. Even if the app is highly rated — Adware Doctor came with more than 6,000 positive reviews — users should always research an app and the developer before installing anything from the internet, regardless of where it comes from. This incident follows an earlier report this week of a rogue Chrome browser extension. A fake extension was uploaded to Google’s Chrome webstore after the original developer was hacked, allowing the hackers to gain access to its users’ logins to other sites and services.

According to Malwarebytes‘ director of Mac and mobile Thomas Reed, the firm has worked with Apple numerous times in the past to remove fake apps, but these apps will reappear as a new version with a new name before long. “It’s blindingly obvious at this point that the Mac App Store is not the safe haven of reputable software that Apple wants it to be,” he said.

Chuong Nguyen
Silicon Valley-based technology reporter and Giants baseball fan who splits his time between Northern California and Southern…
Does your Mac really need antivirus software? We asked the experts
The MacBook Air on a white table.

There’s been a long-held belief that if you own a Mac, you don’t need to use any type of antivirus software to keep your machine free of malware and other destructive code. But it turns out this may actually be more of an old wive’s tale than even the most devoted MacOS users would like to admit. Indeed, Apple has built many safeguards into its operating system, but that doesn’t always mean you’re completely safe. 

We get it: Who would want to sign up for a free or paid version of another computer-adjacent thing? That being said, it never hurts to have too much protection for your Mac. This is a complex topic though, and we asked some Apple insiders to weigh in on the discourse.
Vulnerabilities in Apple’s systems
The belief that Macs are fairly resilient to malware isn’t just idle fanboy-ism. Windows PCs make up roughly 90% of the market, making them a much more attractive target to malware makers.

Read more
How to change the default apps on a Mac
Change your Mac’s default apps in three easy steps
MacOS Catalina Hands-on | Macbook Pro

Apple products come loaded with software designed to work seamlessly with the macOS operating system. For example, Safari is the default software used to load websites, Preview is used to view pictures, and Pages will open documents. But if you're not a fan of the built-in software, Apple doesn't lock you into using it. However, you'll need to know exactly where to look if you want to change the default apps on a Mac.

Thankfully, the process is largely the same whether you're running macOS Sonoma 14, Ventura 13, or other macOS versions. It's also easy to reverse the process and go back to using default apps.

Read more
Apple quietly backtracks on the MacBook Air’s biggest issue
The MacBook Air on a white table.

The new MacBook Air with M3 chip not only allows you to use it with two external displays, but it has also reportedly addressed a storage problem that plagued the previous M2 model. The laptop now finally has much faster storage performance since Apple has switched back to using two 128GB NAND modules instead of a single 256GB module on the SSD drive.

This was discovered by the YouTuber Max Tech, who tore down the entry-level model of the MacBook Air M3 with 8GB of RAM and 256GB of storage. In his tests, thanks to the two NAND modules, the M3 MacBook Air is nearly double faster than the M2 MacBook Air. Blackmagic Disk Speed tests show that the older M2 model with the problematic NAND chip had a 1584.3 Mb/s write speed, and the newer M3 model had 2108.9 Mb/s for the M3 model, for a 33% difference. In read speeds, it was 1576.4 Mb/s on the old model and 2880.2 Mb/s on the newer model.

Read more