Live data from Hacker News

Apple has shut down the first fully-functional Mac OS X ransomware

techcrunch.com

1–10 of 30 posts

Re: Apple has shut down the first fully-functional Mac OS X ransomware

#4
post #2

Has the Transmission team offered any explanation of how the tainted binary ended up being served by them? My concern is that the attackers were also able to maliciously modify the Transmission source code.

Someone compromised their main web server where the binaries are hosted and put up a malicious binary.

Re: Apple has shut down the first fully-functional Mac OS X ransomware

#5
post #2

Has the Transmission team offered any explanation of how the tainted binary ended up being served by them? My concern is that the attackers were also able to maliciously modify the Transmission source code.

Someone compromised their main web server where the binaries are hosted and put up a malicious binary.

Do you have a citation for this? The extent of what was illicitly accessed remains unclear. Without knowing how their infrastructure is set up, it's not possible to say that the intrusion was limited to just the web server.

Re: Apple has shut down the first fully-functional Mac OS X ransomware

#7
"...has shut down the first fully-functional Mac OS X ransomeware"

Here I was hoping it was the second malware coded with functional programming. Scheme last time [1]. I was hoping to see some systems Haskell or ATS in there. Oh well. Always another opportunity when it comes to malware.

[1] http://philosecurity.org/2009/01/12/interview-with-an-adware...

Re: Apple has shut down the first fully-functional Mac OS X ransomware

#9

> The fact that OS X has now been targeted speaks to the popularity of Apple’s operating system It's not a security breach it's a problem of rising popularity. That's one way to spin it.

It's not spin, it's someone saying "I told you so."

The claim was always that the Mac was as prone to viruses as Windows but so few people owned Macs that no one bothered writing Mac viruses.

It's all endlessly debatable, of course, but that's what the author is referring to.

Re: Apple has shut down the first fully-functional Mac OS X ransomware

#10
post #5

Earlier quoted context omitted.

Someone compromised their main web server where the binaries are hosted and put up a malicious binary.

Do you have a citation for this? The extent of what was illicitly accessed remains unclear. Without knowing how their infrastructure is set up, it's not possible to say that the intrusion was limited to just the web server.

Here's the Reuters article where they state that:

http://www.reuters.com/article/apple-ransomware-idINL1N16F17...

Post reply on HN