Skip to main content

Apple tells Digital Trends that it has blocked ‘WireLurker’ malware targeting iPhones and iPads

iPhone 6
Image used with permission by copyright holder
It’s not very often you hear about malware targeting iOS, but security researchers in Silicon Valley said on Wednesday they’ve spotted new malicious software doing just that.

Although it appears to be spreading through a third-party OS X app store in China and consequently largely confined to that country, the development could be a taste of things to come for iDevice owners in other parts of the world if similarly designed malware is launched by other cybercriminals, or even the same group.

Palo Alto Networks said the one it’s uncovered, called ‘WireLurker’, loads onto iPhones and iPads when the device is connected via USB to a Mac computer onto which an infected OS X app has already been downloaded.

Updated on 11-06-2014 by Jeffrey Van Camp: An Apple representative has told Digital Trends that “We are aware of malicious software available from a download site aimed at users in China, and we’ve blocked the identified apps to prevent them from launching. As always, we recommend that users download and install software from trusted sources.”

The security firm’s Claud Xiao said in a blog post (via NYT) that the malicious software is apparently only the second known case of a malware attack on iOS devices through OS X via USB, and can infect Apple devices whether or not they’ve been jailbroken. In an ominous note, the researcher said the discovery “heralds a new era in malware attacking Apple’s desktop and mobile platform” and is “the biggest in scale we have ever seen.”

According to Palo Alto Networks’ research, WireLurker has infected 467 OS X apps on the third-party Maiyadi App Store, with just over 356,000 downloads made to OS X computers, meaning the malware could have impacted “hundreds of thousands” of iOS users.

The malware is capable of stealing “a variety of information” from a user’s mobile device, though according to Xiao, the goal of the person or people behind the software, which is continuing to be updated, is yet to be identified.

For now, the security firm suggests users take a number of steps to ensure they steer clear of WireLurker and similar threats, including avoiding Mac apps from third-party app stores, and refraining from connecting iOS devices to untrusted or unknown accessories or computers. See Xiao’s post for the full list of recommended measures.

While the software appears to be confined to users in China for now, Ryan Olson, the director of threat intelligence at Palo Alto Networks, suggested it may not stay that way, telling the NY Times that it “demonstrates to a lot of attackers that this is a method that can be used to crack through the hard shell that Apple has built around its iOS devices.”

We’ve reached out to Apple for comment and will update when we hear back.

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
Arc Search, one of the best iPhone apps right now, just got even better
Arc Search's Call Arc feature.

One of our favorite iPhone browser apps has just introduced an interesting new feature. Arc Search’s new "Call Arc" tool functions similarly to making a phone call on your iPhone 15 Pro or other iPhone. Instead of speaking to someone on the other end of the line, though, you ask Arc to answer your queries. The outcome is fresh and unique, and it actually works really well.

Before its latest software update, Arc Search already offered a voice search feature. The AI-powered Call Arc is different and designed for people on the go who are looking for quick answers to short questions.

Read more
How to fix the ‘No SIM Card Installed’ error on your iPhone
iPhone 14 Pro Max showing No SIM Available error.

Once you’ve activated your iPhone with your carrier, it should continue to work on the cellular network without any problems as long as you’re within range of a tower.

Nevertheless, the vagaries of technology mean that not everything always works the way it should, and sometimes you may encounter problems with your cellular connection. In most cases, these will manifest as not being able to place calls or get online with your data plan — conditions that are usually accompanied by a low signal indicator or a “No Service” message in the status bar.

Read more
Here are the 7 new emoji coming to your iPhone with iOS 18
2024 emoji.

It's that time of year again! The Unicode Consortium has released a preview of new emoji that will likely be included in a version of iOS 18 later this year or early next year. It will be up to Apple to officially add them to the next iOS, iPadOS, watchOS, macOS, and visionOS versions.

The new emoji announced today include ones for a sleepy face, fingerprint, leafless tree, vegetable root, harp, shovel, and splatter. The emoji examples provided by Unicode serve as starting points for Apple designers to create finished designs and are not the final images Apple will use. Google and other platform users will also work with these emoji as a starting point.

Read more