Categories: MacSecurityWorkspace

Mac Trojan With Links To Syria Uncovered

An Apple Mac Trojan has been discovered that has links to Syria and the infamous Syrian Electronic Army.

The Mac Trojan creates a backdoor and appears to have been used in a targeted attack, according to security company Intego. Thankfully for users, the “threat level appears to be low”, even if users have had machines infected.

When the malware connected to machines, it pinged the system to check the connection was active and then tried to download an image related to the Syrian Electronic Army:

Mac Trojan trouble

“It’s advised that users keep all their software, particularly operating system, browsers and browser plugins (such as Flash and Java if applicable) up to date as exploits are common ways for such attacks to spread,” Intego said, in a blog post.

The company said it was not sure how the malware was getting onto users’ machines, but it was likely through spear phishing emails or a watering hole attack, where users visit a website containing malicious code. Both are tactics that have been employed by the Syrian Electronic Army.

Despite the lack of worrisome functionality, the malware seems to be doing a good job of avoiding Mac security protections.

“The Mac Trojan hides itself from the Dock and Cmd-Tab Application switching. It then opens the JPEG image inside the Application bundle with the standard OS X application Preview, which fools the user into thinking that it was just an image file,” Intego added.

“The Trojan application installs a permanent backdoor that allows the attacker to send a variety of commands.”

What do you know about Internet security? Find out with our quiz!

Thomas Brewster

Tom Brewster is TechWeek Europe's Security Correspondent. He has also been named BT Information Security Journalist of the Year in 2012 and 2013.

Recent Posts

Binance’s Changpeng Zhao Sentenced To Four Months In Prison

US judge sentences Binance founder, Changpeng Zhao, to four months in prison for ignoring money…

3 hours ago

OpenAI Hit By Austrian Complaint Over ChatGPT ‘False Data’

Rights group argues ChatGPT tendency to generate false information on individuals violates GDPR data protection…

1 day ago

EU Designates Apple’s iPad OS As DMA ‘Gatekeeper’

European Commission says Apple's iPadOS is 'gatekeeper' due to large number of businesses 'locked in'…

1 day ago

Beating the Barbarians in the Cloud

As the cloud continues to be an essential asset for all businesses, developing and maintaining…

1 day ago

Austria Conference Calls For Controls On ‘Killer Robots’

Internatinal conference in Vienna calls for controls on AI-powered autonomous weapons to ensure humans remain…

1 day ago

US Probes Ford BlueCruise Driver Assistance Over Crashes

US highway safety agency opens formal investigation into Ford BlueCruise following two fatal crashes in…

1 day ago