Again Trojan appeared to attack Mac OS

Over the weekend, the security community said they had discovered a new Trojan code that could potentially attack Apple's Mac OS.

The anti-malware security firm that attacks the Mac operating system, SecureMac, in the last security warning message released last Thursday, said the AppleScript.THT Trojan was released through a number of malicious websites by hackers. In addition, this malicious code is also distributed through Apple's instant messaging service iChat.

AppleScript.THT is classified as "extremely dangerous" by SecureMac.

SecureMac said AppleScript.THT attacks the newly discovered security vulnerability in Apple Remote Desktop Agent (ARDAgent) - the department that performs Tiger and Leopard's remote device management functions. If successful the Trojan will allow remote hackers to gain full control of ARDAgent.

" If successful penetration into the system, this malicious code will allow hackers to gain complete control of the user's PC. It can also transfer the system administrator account login and password to private. Hackers, avoid detection by opening separate operating ports on the firewall system or turning off system activity logging , "SecureMac said.

Again Trojan appeared to attack Mac OS Picture 1 " In addition, this trojan also has a built-in keylogger that captures all actions on the keyboard, controls photos taken using Apple iSight Camera for operating on the screen and activates the file sharing feature. believe ".

SecureMac's warning was broadcast one day after some details about the ARDAgent security error were revealed on the famous website Slashdot.org. On the same day, security firm Intego also provided some additional information about the error.

Intego said AppleScript, if successful, would allow hackers to gain access to the system "root" level - the highest level of access in an Linux-based operating system.

" When a malicious code has access to the" root "level, it can cause inconvenient consequences, it can delete all files or change settings on the system or even set up actions. The case is done periodically ".

However, like other Trojans, AppleScript.HTT cannot start automatically but requires user intervention such as downloading and activating it.

Some security experts do not appreciate the Trojan and say users can protect themselves from this Trojan by removing ARDAgent.

4.5 ★ | 2 Vote

May be interested

  • There are many malicious code targeting eBayThere are many malicious code targeting eBay
    ebay users are suffering from an attack from an extremely dangerous trojan. security firm symantec said within a week trojan.bayrob has modified up to 3 times to avoid detection and destruction.
  • Trojans appear to attack Microsoft OfficeTrojans appear to attack Microsoft Office
    security experts have warned of a new trojan that appears to be able to attack an unpatched microsoft office security vulnerability that could allow hackers to hack into computers.
  • Appeared Trojan Horse virus attacks Mac computersAppeared Trojan Horse virus attacks Mac computers
    network security company intego has alerted a new trojan horse virus called osx.rsplug. one special thing is that this virus specializes in attacking mac computers. trojans are a type of dnschanger that can change the address of the provider
  • 5 mobile security risks you need to avoid5 mobile security risks you need to avoid
    here are the most used mobile attack methods of 2018. let's find out and see these new digital wave protections.
  • 2007: Super sophisticated Trojan will be raging2007: Super sophisticated Trojan will be raging
    the extremely sophisticated technique that this trojan uses will become popular in 2007, a security expert warns. named 'rustock', the later trojan family first appeared nearly a year ago.
  • Neprodoor trojan warning appears in VietnamNeprodoor trojan warning appears in Vietnam
    users of domestic computers have been warned about a new type of dangerous trojan named neprodoor originating from russia, which has appeared and spread on computers in vietnam.
  • Apple fake Trojan sales announcementApple fake Trojan sales announcement
    security firm sophoslabs has warned about the spread of a backdoor trojan called troj / downdec-a. this trojan takes advantage of an apple sales announcement (about the ipod) to attack a user's computer.
  • Again appeared kidnapping trojansAgain appeared kidnapping trojans
    security firm sophos yesterday warned users of a new 'kidnapping' trojan that requires users to pay $ 10.99 to stop deleting files on the infected system.
  • What is Trojan? How to avoid Trojan horse virusWhat is Trojan? How to avoid Trojan horse virus
    a trojan or trojan horse is a type of malicious code or software that can take control of a user's computer remotely.
  • What is Trojan Dropper?What is Trojan Dropper?
    one particular program used by cyber criminals in their illegal transactions is the trojan dropper program. so how does this happen and how can you prevent it?