I-Mac Malware Notebook

I-Mac malware ukuyibuka

I-Apple ne-Mac bebelokhu babe nesabelo sayo sokukhathazeka ngokuphepha eminyakeni edlule, kodwa ingxenye enkulu, akuzange kube yindlela enkulu yokuhlaselwa okubanzi. Ngokuvamile, lokho kushiya abasebenzisi abathile be-Mac bezibuza ukuthi badinga uhlelo lokusebenza lwe-antivirus .

Kodwa ngethemba lokuthi idumela leMac lanele ukunqanda ukuhlaselwa kwamakhodi e-malware akuyona into engokoqobo, kanti iMac eminyakeni yamuva ibona ukuphakama kwe-malware okubhekiswe kubasebenzisi bayo. Kungakhathaliseki ukuthi kungani, i-Mac malware ibonakala iyanda, futhi uhlu lwethu lwe-Mac malware lungakusiza uqhubeke phezulu kwesongelo olukhulayo.

Uma uzithola udinga uhlelo lokusebenza lwe-antivirus lwe-Mac ukuthola futhi ususe noma yikuphi kwalokhu kusongela, sibheke umhlahlandlela wethu wezinhlelo ezinhle ze-Mac Mac Antivirus .

IzitheloFly - Spyware

Yini
IzitheloFly is a variant of malware okuthiwa spyware.

Okukwenzayo
IzitheloFly and variant kukhona spyware eyenzelwe ukusebenza ngokuthula ngasemuva bese uthatha izithombe zomsebenzisi usebenzisa ikhamera eyakhelwe ngaphakathi ku-Mac, uthathe izithombe zeskrini, bese ungena ngemvume.

Isimo samanje
I-FruitFly ivinjelwe izibuyekezo ku-Mac OS. Uma usebenzisa i- OS X El Capitan noma kamuva FruitFly akumele kube yinkinga.

Izinga lokutheleleka libonakala liphansi kakhulu mhlawumbe liphansi kwabasebenzisi abangu-400. Kubukeka sengathi ukutheleleka kwangempela kwakubhekiswe kubasebenzisi embonini ye-biomedical, okungase kuchaze ukungena okungavamile kwe-original version ye-FruitFly.

Ingabe iseyasebenza?
Uma unayo I-FruitFly efakwe ku-Mac yakho, izinhlelo zokusebenza eziningi ze-Mac antivirus ziyakwazi ukuthola nokususa i-spyware.

Indlela okuthola ngayo i-Mac yakho

IzitheloKuvele kufakwe ngokukhohlisa umsebenzisi ukuchofoza kusixhumanisi sokuqala inqubo yokufaka.

Mac Sweeper - Scareware

Yini
I-MacSweeper ingaba uhlelo lokusebenza lokuqala lwe-Mac scareware .

Okukwenzayo
I-MacSweeper yenza sengathi ifuna i-Mac yakho ngezinkinga, bese izama ukukhokha ngokuqondile kumsebenzisi ukuze "Hlela" izinkinga.

Ngenkathi izinsuku ze-MacSweeper njengendlela yokuhlanza uhlelo lokusebenza zilinganiselwe, zenze ama-scareware nezinhlelo zokusebenza ezisekelwe ku-adware eziningana ezihlinzekela ukuhlanza i-Mac yakho nokuthuthukisa ukusebenza kwayo, noma ukuhlola i-Mac yakho emigodini yokuphepha bese unikeza ukuyilungisa .

Isimo samanje
I-MacSweeper ayizange isebenze kusukela ngo-2009, nakuba ukuhlukahluka kwanamuhla kuvela futhi kuyanyamalala kaningi.

Ingabe i-Sill Active?
Izinhlelo zokusebenza zakamuva ezisebenzise amacebo afanayo i-MacKeeper equkethe idumela le-adware ehlanganisiwe ne-scareware. I-MacKeeper nayo ibhekwa njengokunzima ukususa .

Indlela Izuza ngayo ku-Mac yakho
I-MacSweeper ekuqaleni itholakale njengokukhishwa mahhala ukuzama uhlelo lokusebenza. I-malware nayo yasakazwa nezinye izinhlelo zokusebenza ezifihliwe ngaphakathi kwezifaki.

KeRanger - Ransomware

Yini
I-KeRanger yayiyisiqephu sokuqala se- ransomware esibonwe kuma-Macs ahlasela amasendle.

Okukwenzayo
Ekuqaleni kuka-2015 umcwaningi wezokuphepha waseBrazil ushicilele ikhodi ye-proof-of-concept encane ebizwa ngokuthi i-Mabouia ehlose ama-Macs ngokubethela amafayela womsebenzisi futhi efuna isihlengo sokhiye wokumisa kabusha.

Ngokushesha ngemva kokuhlolwa kukaMabouia ebhodini, inguqulo eyaziwa ngokuthi i-KeRanger yavela endle. Okokuqala kutholakala ngo-March ka-2016 yi-Palo Alto Networks, i-KeRange isakazeka ngokufakwa ku-Transmission uhlelo lokusebenza olufakiwe lwe-BitTorrent client installer. Uma i-KeRanger ifakiwe, uhlelo lokusebenza lusetha isiteshi sokuxhumana nesiphakeli esikude. Ngesikhathi esithile esizayo, isiphakeli esikude singathumela ikhi lokubhala ukuze lisetshenziselwe ukubethela wonke amafayela womsebenzisi. Uma amafayela afakwe ngokubethelwa uhlelo lokusebenza lwe-KeRanger ludinga ukukhokhwa ukhiye wokumemezela okudingekayo ukuvula amafayela akho.

Isimo samanje
Indlela yasekuqaleni yokutheleleka isebenzisa uhlelo lokusebenza lwe-Transmission kanye nesifaki sayo ihlanjululwe ikhodi ekhubazayo.

Ingabe iseyasebenza?
I-KeRanger nanoma yikuphi ukuhlukahluka kusacatshangwa ukuthi iyasebenza futhi kulindeleke ukuthi abathuthukisi bezinhlelo zokusebenza ezintsha bazobhekwa ekudluliseni i-ransomware.

Ungathola imininingwane eminingi mayelana ne-KeRanger nokuthi ungasusa kanjani uhlelo lwe-ransomware kumhlahlandlela: I- KeRanger: I-Mac MacRansomware yokuqala ku-Wild Discover .

Indlela Izuza ngayo ku-Mac yakho
I-Trojan engaqondile ingase ibe yindlela engcono kakhulu yokuchaza izindlela zokusabalalisa. Kuzo zonke izimo kude kube manje i-KeRanger ingezwe ngokuzenzakalelayo kwizinhlelo zokusebenza ezisemthethweni ngokuqhaqhaza iwebhusayithi ye-yonjiniyela.

I-APT28 (i-Xagent) - i-Spyware

Yini
I-APT28 ingahle ibe yinto eyaziwa kakhulu ye-malware, kodwa iqembu elibandakanyekayo ekudalweni kwayo nokusabalalisa ngokuqinisekile, i-Sofacy Group, eyaziwa nangokuthi i-Fancy Bear, leli qembu elinamalungu ohulumeni waseRussia lalikholakala ukuthi lilandela ukuqhutshwa kwe-cyberattacks ku-German iphalamende, iziteshi zethelevishini zaseFrance, ne-White House.

Okukwenzayo
I-APT28 uma ifakiwe kudivayisi yenza i-backdoor isebenzisa i-module ebizwa ngokuthi i-Xagent ukuxhuma kwi-Komplex Downloader iseva elikude elingakwazi ukufaka amamojula ahlukene ahloselwe uhlelo lwe-host host.

Amamojuli we-spy based based spy okubonakala manje afaka phakathi abakhiye be-keyloggers ukuze babambe noma iyiphi imibhalo oyifakayo kusuka kwikhibhodi, isikrini sokubamba ukuvumela abahlaseli ukuba babone ukuthi wenzani esikrinini, kanye namafayela abamba amafayela angathumela ngokuzenzakalelayo amakhophi amafayela kude iseva.

I-APT28 ne-Xagent zenzelwe ngokuyinhloko ukulandelela idatha etholakala ku-Mac target kanye nanoma yisiphi idivayisi i-iOS ehlobene ne-Mac bese ibuyisela ulwazi kumhlaseli.

Isimo samanje
Inguqulo yamanje ye-Xagent ne-Apt28 ithathwa ngokuthi ayisasongela ngoba isiphakeli esikude asisasebenzi futhi i-Apple ivuselele uhlelo lwayo lwe-XProtect antimalware olwakhiwe ukuze lubukeze i-Xagent.

Ingabe iseyasebenza?
Ayisebenzi - I-Xagent yasekuqaleni ibonakala ingasasebenzi ngoba umyalo namaseva wokulawula ahambangaxhunyiwe ku-intanethi. Kodwa akusilo ukuphela kwe-APT28 ne-Xagent. Kubonakala ikhodi yomthombo ye-malware idayisiwe futhi izinguqulo ezintsha ezibizwa ngokuthi i-Proton ne-ProtonRAT isiqalile ukwenza ama-rounds

Indlela Yokutheleleka
Ayaziwa, nakuba i-hood cishe ihamba ngeThrojani ehlinzekwa nge-social engineering.

I-OSX.Proton - I-Spyware

Yini
I-OSX.Proton ayiyona entsha ye-spyware kodwa kubasebenzisi abathile be-Mac, izinto ziphenduke kabi ngoMeyi lapho uhlelo lokusebenza oludumile lwesibhamu sekhanda lugxotshwa futhi i-Proton malware ifakiwe kuyo. Phakathi no-Okthoba i-spyware spyware itholakala kufihliwe ngaphakathi kwezinhlelo zokusebenza ezidumile ze-Mac ezikhiqizwa i-Eltima Software. Ngokuqondile i-Elmedia Player ne-Folx.

Okukwenzayo
I-Proton iyi-backdoor yokulawula eyikude ehlinzeka ngokufinyelela kwezingcambu ezingeni lesisulu sokuvumela ukufinyelela okuphelele kwehlelo lakho le-Mac. Umhlaseli angabutha amaphasiwedi, okhiye be-VPN, faka izinhlelo zokusebenza ezifana nezikhiye, sebenzisa i-akhawunti yakho ye-iCloud, nokuningi okuningi.

Izinsiza zokusebenza eziningi ze-Mac zikwazi ukuthola nokususa i-Proton.

Uma ugcina ukwaziswa kwekhadi lesikweletu ngaphakathi kwezinkinobho zakho ze-Mac, noma kubaphathi bephasiwedi yangaphandle , kufanele ucabangele ukuxhumana namabhange akhiphayo bese ucela ukukhishwa kulawo ma-akhawunti.

Isimo samanje
Abaphakeli bezinhlelo zokusebenza abayizinhloso ze-hack yokuqala kusukela ngaleso sikhathi baye basula i-spyware ye-Proton emikhiqizo yabo.

Ingabe iseyasebenza?
I-Proton isabhekwa njengento esebenzayo futhi abahlaseli bayophinde bavele ngenhlobo entsha nomthombo omusha wokusatshalaliswa.

Indlela Yokutheleleka
I-Trojan engaqondile - Ukusebenzisa umthengisi wesithathu, ongaqapheli ukuba khona kwe-malware.

I-KRACK - I-Spyware Proof-of-Concept

Yini
I-KRACK iyisisulu sokuhlaselwa komqondo ohlelweni lwe- Wi-Fi lwe - WPA2 olusetshenziswa amanethiwekhi amaningi angenantambo. I-WPA2 isebenzisa indlela yokubamba ngesandla ngezindlela ezi 4 ukusetha isiteshi sokuxhumana esivele phakathi komsebenzisi nendawo yokufinyelela engenazintambo.

Okukwenzayo
I-KRACK, eqinisweni uchungechunge lokuhlaselwa ngokumelene nokusebenza ngezandla ezine, kuvumela umhlaseli ukuthi athole ulwazi olwanele ukuze akwazi ukuchithwa kwemifudlana yedatha noma ukufaka ulwazi olusha kumazokuxhumana.

Ububuthakathaka be-KRACK ku-Wi-Fi yokuxhumana buyithinta kakhulu noma iyiphi idivayisi ye-Wi-Fi esebenzisa i-WPA2 ukuze kutholakale ukuxhumana okuphephile.

Isimo samanje
I-Apple, iMicrosoft, nabanye bavele behambisa izibuyekezo zokunqoba ukuhlaselwa kwe-KRACK noma bahlela ukwenza kanjalo maduzane. Kubasebenzisi be-Mac, ukubuyekezwa kokuphepha sekuvele kubonakala kuma-beta we-macOS, iOS, i-watchOS, ne-TVOS, futhi izibuyekezo kufanele zikhishwe emphakathini maduzane nezibuyekezo ezilandelayo ze-OS ezincane.

Okukhathazeka okukhulu yiyo yonke i-IoT (i-Intanethi yezinto) esebenzisa i-Wi-Fi yokuxhumana, kufaka phakathi ama-thermometer ekhaya, ama-opener door door, ukuphepha ekhaya, amadivayisi wezokwelapha, uthola umbono. Eziningi zala madivayisi zizodinga izibuyekezo ukuze zivikeleke.

Qinisekisa futhi ubuyekeze amadivayisi wakho ngokushesha uma isibuyekezo sokuphepha sitholakala.

Ingabe iseyasebenza?
I-KRACK izohlala isebenza isikhathi eside. Kuze kube yilapho yonke idivaysi ye-Wi-Fi esebenzisa isimiso sokuphepha se-WPA2 ingahle ibuyekezwe ukuvimbela ukuhlasela kwe-KRACK noma amathuba amaningi okuthatha umhlalaphansi futhi kufakwe esikhundleni samadivayisi amasha we-Wi-Fi.

Indlela Yokutheleleka
I-Trojan engaqondile - Ukusebenzisa umthengisi wesithathu, ongaqapheli ukuba khona kwe-malware.