All the latest UK technology news, reviews and analysis

Mac OS X crimeware kit found on underground forums

by Phil Muncaster

03 May 2011

Comment: 1

  • Tweet this

Danish IT security vendor CSIS Security Group is warning Mac users to expect an avalanche of new information-stealing malware attacks after discovering what it claims to be the first crimeware kit aimed at the Mac OS X platform being traded on underground forums.

The authors of the kit are trying to keep a low profile, but it is being sold under the name Weyland-Yutani BOT and is already fully operational, according to CSIS.

"In the same way as several other DIY crimeware kits designed for PCs, this tool consists of a builder, an admin panel and supports encryption," wrote CSIS partner Peter Kruse in a blog post.

"The Weyland-Yutani BOT supports web injects and form grabbing in Firefox; however both Chrome and Safari will soon follow. The web injects templates are identical to the ones used in Zeus and Spyeye."

The first version of the kit is being sold on several forums for $1,000, he added.

Hacking kits designed for PCs have already spread far and wide on the web's underground forums and have been widely held responsible for the growing threats from malware such as the banking information stealing ZeuS Trojan.

"CSIS finds this crimekit to be quite disturbing news since Mac OS previously to some degree has been spared from the increasing amount of malware which has haunted Windows-based systems for years," said Kruse.

"This could have resulted in a false sense of security that might make Mac OS users especially vulnerable to a sudden and highly sophisticated attack. "

The bad news may not end there for Apple fans, with cyber criminals reportedly developing similar attack kits for the iPad, as well as Linux machines, he added.

Do you agree?

 

Add your comment

We won't publish your address
By submitting a comment you agree to abide by our Terms & Conditions. Your comment will be moderated before publication.

Poll

Flame virus poll

Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?

39%

0%

10%

51%

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

Symanteccloud

Social networking: a guide for IT managers

Social networking is almost ubiquitous. This white paper examines the benefits and risks and it looks at the different ways companies can reconcile them

Riverbed

Mitigating the risks of IT change

The importance of understanding your infrastructure

Java Developer, Algo Trading, FX, Trading Strategies

Java Deveoper/Programmer/Software Engineer, Algo Trading...

Lead and Senior Developers Wanted

Austin Fraser has the pleasure of appointing a number...

Java Developer - Great move up for a Junior Developer

Austin Fraser has the pleasure of appointing a Java Developer...

Senior J2EE Application Developer

Austin Fraser has the pleasure of appointing a Senior...

To send to more than one email address, simply separate each address with a comma.