Beware! This Scary Ransom Seeking Malware Has Targeted Apple Users For The First Time

Reuters

 Apple Inc (AAPL.O) customers were targeted by hackers over the weekend in the first campaign against Macintosh computers using a pernicious type of software known as ransomware, researchers with Palo Alto Networks Inc (PANW.N) said on Sunday.

b’Source: Reuters’

Ransomware, one of the fastest-growing types of cyber threats, encrypts data on infected machines, then typically asks users to pay ransoms in hard-to-trace digital currencies to get an electronic key so they can retrieve their data.

Palo Alto Threat Intelligence Director Ryan Olson said the “KeRanger” malware, which appeared on Friday, was the first functioning ransomware attacking Apple’s Mac computers.

“This is the first one in the wild that is definitely functional, encrypts your files and seeks a ransom,” Olson said in a telephone interview.

b’Source: Reuters’

Hackers infected Macs through a tainted copy of a popular program known as Transmission, which is used to transfer data through the BitTorrent peer-to-peer file sharing network, Palo Alto said on a blog posted on Sunday afternoon.

When users downloaded version 2.90 of Transmission, which was released on Friday, their Macs were infected with the ransomware, the blog said.

Transmission responded by removing the malicious version of its software from its website (www.transmissionbt.com). On Sunday it released a version that its website said automatically removes the ransomware from infected Macs.

The website advised Transmission users to immediately install the new update, version 2.92, if they suspected they might be infected.

Palo Alto said on its blog that KeRanger is programmed to stay quiet for three days after infecting a computer, then connect to the attacker’s server and start encrypting files so they cannot be accessed.

After encryption is completed, KeRanger demands a ransom of 1 bitcoin, or about $400, the blog said. 

Olson, the Palo Alto threat intelligence director, said that the victims whose machines were compromised but not cleaned up could start losing access to data on Monday, which is three days after the virus was loaded onto Transmission’s site.

(Feature Image Source: Reuters)

You might also like
HBO’s Harry Potter Reboot Announces First Cast Members – And It’s Already Raising Eyebrows
Prada Agrees To Buys Versace for $1.3B in Major Italian Fashion Merger
The Clock Stops For No One (Except in Bihar, Apparently)
Jaipur Isn’t an Accident. It’s Proof That Drunk Driving in India Is Practically a Free Pass
De-extinction Drama: Dire Wolves Are Back, and We’re Not Sure Whether to Celebrate or Hide!
“Excuse Me” Is Now a Crime — Women & Baby Attacked Over Two English Words