Digita Security

Cybersecurity solutions for the

  • modern
  • mobile
  • independent
  • innovative
  • enterprising

macOS workforce

9.25.2015 ( Version 2068 )

XcodeGhost


OSX/XcodeGhost is malware delivered as a compromised version of Apple's XCode Interactive Development Environment (IDE) to unsuspecting app developers. It secretly infects apps built with the IDE to spread malware to end user iOS and OS X devices. These malware apps are capable of spying on users and stealing user information [1]. PaloAlto networks provided a technical analysis of the novel infection technique [2].

References:
  1. https://en.wikipedia.org/wiki/XcodeGhost
  2. https://researchcenter.paloaltonetworks.com/2015/09/novel-malware-xcodeghost-modifies-xcode-infects-apple-ios-apps-and-hits-app-store/

Sample Hashes (VT links):
bdb452b56b21d3537de252d612b2469c752b2a9f7e0cc0d45624bedf762cfc7b