Developers working on the Tor anonymity service asked Apple months ago to remove a malicious Tor browser that poses a threat to its users from the App Store (via Ars Technica). After receiving no action through official channels, Tor project members now are using more public means to get this app removed.

tor-browser
A report ticket published three months ago by volunteer Phobos details the issue with rogue app.

"Tor Browser in the Apple App Store is fake. It's full of adware and spyware. Two users have called to complain. We should have it removed."

Tor officials confirmed they filed a complaint with Apple in December 2013 and received a response that the app developer was allowed to defend his app from these accusations.

Several followup emails were sent to Apple, but there was no response from the Cupertino company. Twelve weeks later and the app remains in the App Store, prompting the team to step up their campaign to get the app removed.

"I think naming and shaming is now in order. Apple has been putting users at risk for months now," writes lunar

"I mailed Window Snyder and Jon Callas to see if they can get us past the bureaucracy.

Otherwise I guess plan C is to get high-profile people on Twitter to ask Apple why it likes harming people who care about privacy. (I hope plan B works.)," writes arma.

Apple's App Store is known for being a walled garden where apps are vetted before they are allowed entry into the App Store. The process is not flawless, though, with researchers from Georgia Tech last year showing how an innocuous app with hidden malware-type code could slip through Apple's app approval system.

Once a malicious app is identified in the App Store, Apple has in the past taken steps to remove the app, but the exact process by which an app is removed is not known. In an earlier example, Apple quickly pulled a Russian SMS app that quietly scraped address book contacts and sent them to the developer's server.

Update 8:26 PM: Tor Browser has been removed from the App Store.

Top Rated Comments

156 months ago
All I see is people wanting this fake Tor app to be removed because the name and logo are the same.

Perhaps it's not so smart to license the logo and trademark under creative commons if you want to control it.
Score: 8 Votes (Like | Disagree)
156 months ago
Maybe they're leaving it up there to poison the name "Tor" so people think it's generally unsafe.
Score: 6 Votes (Like | Disagree)
rageguy Avatar
156 months ago
I am unable to find out what is so malicious about this fake Tor app. I don't see evidence of malware. All I see is people wanting this fake Tor app to be removed because the name and logo are the same.

In other words, the original complaint "Tor Browser in the Apple App Store is fake. It's full of adware and spyware. Two users have called to complain. We should have it removed." appears to be false accusations.

Since no evidence has been presented, Apple of course will not remove the app. "Two users have called to complain" is not evidence.
Score: 5 Votes (Like | Disagree)
Parasprite Avatar
156 months ago
Perhaps it's not so smart to license the logo and trademark under creative commons if you want to control it.

IIRC the license requires you attribute their work and not claim or imply that you represent them in any way, making this somewhat of a null point.
Score: 3 Votes (Like | Disagree)
Parasprite Avatar
156 months ago
You don't need to recall, it's easy enough to google.

https://creativecommons.org/licenses/by/3.0/us/

I'm no lawyer, but the terms surrounding it apart from attribution seems pretty loose. On the other hand, allowing people to use your trademark seems like pretty obvious attack vector for a project like Tor, where trust is likely considered important. So why not use a strict license, or not allow sharing of the trademark at all. That way you would know if Tor=Tor so to speak.
Did you read the license or just the summary? Because it seems pretty straight-forward (at least to me) with what is and isn't allowable under the license.

You may not implicitly or explicitly assert or imply any connection with, sponsorship or endorsement by the Original Author, Licensor and/or Attribution Parties, as appropriate, of You or Your use of the Work, without the separate, express prior written permission of the Original Author, Licensor and/or Attribution Parties.
Score: 2 Votes (Like | Disagree)
needfx Avatar
156 months ago
self immolations should do the trick
Score: 1 Votes (Like | Disagree)

Popular Stories

Apple Announces Special Event in New York Feature 1

Apple Reportedly Plans to Unveil at Least Five New Products Next Week

Sunday February 22, 2026 9:48 am PST by
In his Power On newsletter today, Bloomberg's Mark Gurman said Apple will have a three-day stretch of product announcements from Monday, March 2 through Wednesday, March 4. In total, he expects Apple to introduce "at least five products." Subscribe to the MacRumors YouTube channel for more videos. A week ago, Apple invited selected journalists and content creators to an "Apple Experience" in...
iOS 26

iOS 26.3.1 Update for iPhones Coming Soon as 'Apple Experience' Nears

Sunday February 22, 2026 5:29 pm PST by
Apple's software engineers are testing iOS 26.3.1, according to the MacRumors visitor logs, which have been a reliable indicator of upcoming iOS versions. iOS 26.3.1 should be a minor update that fixes bugs and/or security vulnerabilities, and it will likely be released within the next two weeks. Last month, Apple released iOS 26.2.1 with bug fixes and support for the second-generation...
tim cook data privacy day

Tim Cook Warned by CIA That China Could Move on Taiwan by 2027

Tuesday February 24, 2026 4:03 am PST by
Apple CEO Tim Cook was among a handful of top tech executives who attended a classified CIA briefing warning that China could attack Taiwan by 2027, according to a sweeping investigative report by The New York Times ($). The previously unreported briefing was apparently held in a secure room in Silicon Valley in July 2023. The meeting is said to have been arranged at the request of the...