Skip to main content

New iOS malware in China hijacks apps and forces full-page ads in Safari

the iphones switch control has opened up a world of possibility for quadriplegic todd stabelfeldt apple iphone 6s 7859 1500x1
Jessica Lee Star/Digital Trends
Malware on iOS is starting to become a weekly news event. This week’s intrusive software comes in the form of YiSpecter, a program capable of taking over iOS and displaying full-page ads on Safari.

The new malware, which is making the rounds in China and Taiwan, offers ways to circumvent the government’s Internet censorship. It persuades users to download a private version of QVOD, a defunct media player used for sharing pornography and other illegal content in China. QVOD was shut down in 2014 after police raided the developer’s offices, but it is still incredibly popular in China’s underground Web as a portal to illegal content.

Once the app is downloaded, YiSpecter tricks iOS SpringBoard — the software that manages the on-screen icons on iOS — to stop users from uninstalling the app. It then blends into the background, hiding under one of the many system apps on iOS.

YiSpecter is able to “replace existing apps with those it downloads, hijack other apps’ execution to display advertisements, change Safari’s default search engine, bookmarks and opened pages, and upload device information,” according to Palo Alto Networks. A Chinese mobile advertising service was allegedly responsible for the malicious app.

Luckily, Apple acknowledged the problem quickly and removed the app.

“We advise customers to stay current and only download content from the App Store and trusted sources … This particular vulnerability was indeed fixed in iOS 9.0,” an Apple spokesperson said to CNET.

News of the YiSpecter attack follows last week’s Chinese malware panic, which was caused by several high-profile developers who used a faulty version of Xcode to build apps. Those apps have since been purged from the App Store and replaced with apps built on a legitimate version of Xcode.

The YiSpecter attack is another case that proves China’s wild west approach to app curation is not working. Without checks in third-party apps stores, it’s easy for malicious programs to bypass iOS security.

Editors' Recommendations

David Curry
Former Digital Trends Contributor
David has been writing about technology for several years, following the latest trends and covering the largest events. He is…
Become an iPhone video master with this powerful new app
Screenshots from the Kino app.

Avid iPhone photographers will already know the excellent Halide camera app and how it can help transform the stills you take. But they will also know it does not support video, a point the company itself has been well aware of too. That’s why it has launched Kino, a video app for the iPhone that aims to bring similar Halide-style benefits to video instead of stills.

Kino is described as a video app for beginners and experts alike, but to get the most from it, you’ll likely need to be familiar with the iPhone’s video recording modes. For example, one of the main features that makes Kino stand out is Instant Grade, which uses the Log video recording mode, which was introduced on the iPhone 15 Pro and iPhone 15 Pro Max.

Read more
Apple offers peek at how it stress tests the iPhone
Apple testing the water resistance of an iPhone.

Apple tests the water resistance of an iPhone. MKBHD

Popular tech YouTuber Marques Brownlee visited an Apple lab recently to see up close how the company tests the durability of new iPhone handsets.

Read more
Something important just happened to the iPhone 16 series
iPhone 16 Pro and iPhone 16 Pro Max larger displays.

iPhone 16 Pro and iPhone 16 Pro Max renders MacRumors

With  the calendar about to turn to June, attention on the upcoming iPhone 16 series will soon shift into an even higher gear. Along those lines, word is that production on a critical component for at least three of these phones is about to begin.

Read more