Earlier this week, Russian security firm Dr. Web published a blog post announcing the discovery of a new OS X trojan horse known as "Trojan.SMSSend.3666". The malware masquerades as an installer for various software titles, but tricks users into signing up for subscriptions through their mobile devices.
When a user starts such an installer, they see the interface that imitates the installation wizard of a corresponding application. In order to continue the "installation" fraudsters ask that the victim enter their cellphone number into an appropriate field and then specify the code found in a reply SMS. By performing these actions the user agrees to terms of a chargeable subscription and a fee will be debited from their mobile phone account on a regular basis.
Similar trojans have affected Windows and even Android platforms for some time, but the tactic is now being used to target Mac users.
Apple has moved quickly to address the threat, adding definitions for the malware to its "Xprotect.plist" blacklist, which is part of the basic anti-malware tools Apple launched with OS X Snow Leopard in 2009. In its original incarnation, users were required to update definitions manually, but as malware threats against OS X grew, Apple last year instituted automatic daily checks to keep users' systems updated. The anti-malware tools automatically detect when a user has downloaded a file matching the signature of known malware, alerting the user of the threat and advising them to discard the downloaded file.
And people always defended OSX for being virus/spyware free... LOL. Welcome to reality. Hopefully Apple can keep up with the variations that are no doubt going to be roaming out in the wild based on this.
LOL welcome to reality - this isn't a virus at all. It's a fake installer that asks for your cell phone number. It's not an infection - it's a poor phishing attempt.
Again, like I always say, the only virus you can get on OSX is one you install yourself. This just prevents the user from hurting him/herself. This isn't a "virus" like everyone is saying - it's a program that phishes your personal info. It can't escalate itself privelidge-wise like with a Windows virus and become "above" your system to prevent removal or uninstallation. Nothing can do that in OSX due to it's unix base.
Also, great job Apple for staying so on top of this :D
And people always defended OSX for being virus/spyware free... LOL. Welcome to reality. Hopefully Apple can keep up with the variations that are no doubt going to be roaming out in the wild based on this.
Since this application is neither a virus nor spyware I'd say people are quite right.
And people always defended OSX for being virus/spyware free... LOL. Welcome to reality. Hopefully Apple can keep up with the variations that are no doubt going to be roaming out in the wild based on this.
From wikipedia:
A computer virus is a computer program that can replicate itself[1] and spread from one computer to another.
Spyware is a type of malware (malicious software) installed on computers that collects information about users without their knowledge.
Anything that requires me launching an installer and than requiring me to type in my password and cell phone number is not scary at all - its a lame phishing attempt that I laugh about.
I would be worried if it installs automatically in the background and than accesses my address book to get my cell phone number - but even than I would not respond to that SMS to get charged money.
Honestly, I don't get the people that did type in their cell phone number - it is almost impossible to protect those people from their own stupidity.
Anyway, glad to see that Apple is trying to protect people from their own stupidity.
But really, it seems to me this is an issue phone service providers should handle. Why is the money that they handle handled so insecurely? Shouldn't our provider send us some sort of message for us to confirm that some company is going to start leaching money via our phone bill and shouldn't they block companies that they find frequently commit this kind of fraud?
Thursday April 21, 2022 1:14 pm PDT by Juli Clover
Samsung recently introduced the M8, a new 32-inch 4K display that's priced at $700, making it less than half as expensive as the Studio Display from Apple. We picked up one of the displays and thought we'd compare it to the Studio Display in our latest YouTube video to see how it performs and whether you can save some money by going with a cheaper option.
Subscribe to the MacRumors YouTube ...
Thursday April 21, 2022 10:30 am PDT by Juli Clover
Apple today announced in a support document that macOS Server is being discontinued as of April 21, 2022. Apple has been phasing out macOS Server for several years now, and the company is finally ready to shut it down for good.
macOS Server 5.12.2 will be the last version of the app, and macOS Server services have now been migrated to macOS. Popular macOS Server capabilities that include...
Members of the European Parliament this week voted overwhelmingly in support of legislation that will compel Apple to offer a USB-C port on all iPhones, iPads, and AirPods in Europe.
The proposal, known as a directive, will force all consumer electronics manufacturers who sell devices in Europe to ensure that all new phones, tablets, laptops, digital cameras, headphones, headsets, handheld...
All four iPhone 14 models that are expected to launch later this year will likely feature an upgraded front camera with autofocus and a wider ƒ/1.9 aperture, well-known Apple analyst Ming-Chi Kuo said in a tweet today.
The wider aperture would allow more light to pass through the lens and reach the front camera's sensor on iPhone 14 models. Kuo said these camera upgrades could result in an...
Wednesday April 20, 2022 7:34 am PDT by Sami Fathi
Apple must compensate a Brazilian customer who recently purchased an iPhone for selling the device without a charger included in the box, which violates consumer law, a judge has ruled.
Apple's decision to remove the charger in the box sparked controversy in 2020. Apple claims the move is for environmental reasons, claiming the decision is equivalent to removing nearly 450,000 cars from the...
The iPhone 14 Pro could feature significantly rounder corners to match the larger rear camera array, according to Apple concept graphic renderer Ian Zelbo.
Zelbo, who is best known for creating renders of upcoming Apple devices based on leaked information, including the Mac Studio, Studio Display, rumored mixed-reality headset, and more, believes that the iPhone 14 Pro models are likely to...
Thursday April 21, 2022 4:38 am PDT by Tim Hardwick
Transcend has announced a 1TB version of its JetDrive Lite 330 expansion cards for 14-inch and 16-inch MacBook Pro models, providing users of Apple's latest Macs with an affordable way to increase internal storage capacity.
Transcend says the JetDrive Lite 330 cards are built with high-quality NAND flash, offering read and write speeds of up to 95MB/s and 75MB/s, respectively. Once the...
The Apple Cash virtual debit card appears to be switching networks from Discover to Visa, as revealed in some updated images on Apple's website and noted by Twitter user @Kanjo.
Since its launch, Apple Cash (originally known as Apple Pay Cash) has been operated through a partnership with Green Dot Bank on the Discover network. Discover is one of the smaller card networks and is accepted in...
Wednesday April 20, 2022 1:09 pm PDT by Juli Clover
Apple yesterday released a firmware update designed for the MagSafe Battery Pack, and it turns out the new firmware enables 7.5W charging while on the go, up from the previous 5W limit.
In an support document, Apple says that MagSafe Battery Pack owners can update their firmware to the new 2.7.b.0 release to get the faster 7.5W charging capabilities.
Updating the MagSafe Battery Pack can...
Apple on March 14 released iOS 15.4 and iPadOS 15.4, bringing Universal Control across iPad and Mac, support for Face ID while wearing a mask, new emojis, anti-stalking changes for AirTags, and more.
Top Rated Comments
LOL welcome to reality - this isn't a virus at all. It's a fake installer that asks for your cell phone number. It's not an infection - it's a poor phishing attempt.
Also, great job Apple for staying so on top of this :D
Since this application is neither a virus nor spyware I'd say people are quite right.
From wikipedia:
This is neither. Its a plain old scam.
Anything that requires me launching an installer and than requiring me to type in my password and cell phone number is not scary at all - its a lame phishing attempt that I laugh about.
I would be worried if it installs automatically in the background and than accesses my address book to get my cell phone number - but even than I would not respond to that SMS to get charged money.
Honestly, I don't get the people that did type in their cell phone number - it is almost impossible to protect those people from their own stupidity.
Anyway, glad to see that Apple is trying to protect people from their own stupidity.
But really, it seems to me this is an issue phone service providers should handle. Why is the money that they handle handled so insecurely? Shouldn't our provider send us some sort of message for us to confirm that some company is going to start leaching money via our phone bill and shouldn't they block companies that they find frequently commit this kind of fraud?