This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies.  > Find out more here

 

All the latest UK technology news, reviews and analysis

OS X malware targets Dalai Lama supporters

by Shaun Nichols

05 Dec 2012

View Comments

  • Tweet this
Security padlock image

A new OS X malware sample has been spotted by researchers on sites claiming to support of the Dalai Lama.

Researchers from both Intego and F-Secure reported finding samples of the 'Dockster' malware circulating on pro-Tibet websites. The site claims to be run by the office of the Dalai Lama and contains information on the Tibetan spiritual leader.

According to researchers, the page itself uses a Javacript exploit to compromise OS X systems and install the keylogging malware. Users can protect themselves from the attack by updating their systems to the latest version of Java.

Intego researchers have classified the malware as a low-level threat due to its limited distribution.

"Dockster is a very basic backdoor trojan that provides a remote connection to an attacker, along with keylogging functionality and the ability to download additional files," the company said in its report.

"The remote address that the backdoor attempts to contact to receive commands is now active."

This is not the first time sites in support of the Dalai Lama have been compromised for use in malware attacks. In 2009 state-sponsored groups in China were accused of using pro-Tibetan sites to spread spyware and other monitoring tools, presumably for use in spying on pro-Tibetan activists.

Cyber-espionage in China has become a hot topic in recent weeks as government officials in the US have expressed concern that Chinese state-sponsored groups were targeting US firms for surveillance and data theft.

Do you agree

blog comments powered by Disqus

Poll

Business security poll

How concerned are you by the rising tide of cyber threats?

16%

54%

10%

8%

12%

Popular Threads

Powered by Disqus
Samsung Galaxy S4 V3

Samsung Galaxy S4 video review

A solid Android smartphone let down by less than stellar software

Updating your subscription status Loading

Connect with V3.co.uk

Sign up to our daily or weekly newsletters

newsletter sign-up button

mcafee

7 requirements for hybrid web delivery

It's no longer one or other with web security; you can now have a virtualisation and SaaS hybrid model

navisite

BYOD: the implications for the IT team

BYOD is important for employee satisfaction, but poses challenges in terms of security, productivity loss and costs

Marketing Manager

Our client is an international software development organisation...

Marketing Director

Our client is an international software development organisation...

IT Infrastructure Support Engineer - 3rd Line

£450M+ IT Solutions Company is recruiting for a suitably...

Agile PHP Developer, Near Bath

We are actively seeking strong candidates with PHP 5...

To send to more than one email address, simply separate each address with a comma.