Windows 'Snake' Malware Ported to Mac, Imitates Adobe Flash Player Installer - MacRumors
Skip to Content

Windows 'Snake' Malware Ported to Mac, Imitates Adobe Flash Player Installer

Well-known Windows backdoor malware "Snake" has been ported to the Mac for the first time, according to MalwareBytes. Described as "highly-sophisticated," Snake (also called Turla and Uroburos) has been infecting Windows systems since 2008 and was ported to Linux systems in 2014 before making its way to the Mac.

The Snake malware was found earlier this week in an installer masquerading as Adobe Flash Player, buried inside a file named "Install Adobe Flash Player.app.zip." It is designed to look like a legitimate Adobe Flash installer, but is signed by an illegitimate certificate.

snakemalwareinstaller
It does, actually, install Adobe Flash Player, but it is accompanied by additional software that is malicious and designed to provide a backdoor into the Mac. The malicious files are well hidden in the /Library/Scripts/ folder and disguised as an Adobe launch process.

In all, this is one of the sneakier bits of Mac malware lately. Although it's still "just a Trojan," it's a quite convincing one if distributed properly. Although Mac users tend to scoff at Trojans, believing them to be easy to avoid, this is not always the case.

Apple already revoked the certificate that the Snake malware was using to infect Mac machines, but another iteration could pop up, so Mac users should be aware of the possibility.

Those infected by Snake are vulnerable to having data stolen, including login information, passwords, and unencrypted files.

To avoid malicious software, Apple recommends downloading content only from the Mac App Store or from trusted developers.

Tag: Malware

Top Rated Comments

motm95 Avatar
116 months ago
Mistake number one: installing Adobe Flash to begin with.
Score: 92 Votes (Like | Disagree)
116 months ago
For all of those saying it's dumb to install flash, I have to for my homework and online classes for my university. I'd love to give it up, but some of us just don't have the option to.
Score: 20 Votes (Like | Disagree)
dschulian Avatar
116 months ago
People still installing Flash?

Score: 15 Votes (Like | Disagree)
116 months ago
But wait, I thought Macs don't get viruses???
This isn't a virus.
Score: 13 Votes (Like | Disagree)
Olz Avatar
116 months ago
I feel like the people that wrote this malware wasted their time, all they needed to do was force people to install Flash...there are already enough backdoors in that to do what you want with, without adding extra ones.
Score: 12 Votes (Like | Disagree)
116 months ago
Amen to that, these days it's [Adobe Flash] just not necessary.
Sadly, I run into a number of Computer-based Training courses that still use it.
Score: 11 Votes (Like | Disagree)