Apple iTunes crashed causing Windows computers to be infected, deleted applications for several years still affected
The iTunes and iCloud applications on a Windows computer exist a vulnerability that allows bad guys to bypass virus removal and malware installations. The bug only affects iTunes and iCloud versions for Windows computers and Mac computers.
If exploited successfully, bad guys can avoid the security fence on the computer and install ransomware to encrypt the hard drive on the victim's computer, then demand a ransom.
![Apple iTunes crashed causing Windows computers to be infected, deleted applications for several years still affected Picture 1](https://tipsmake.com/data/images/apple-itunes-crashed-causing-windows-computers-to-be-infected-deleted-applications-for-several-years-still-affected-picture-1-GflM8aYhT.jpg)
According to security company Morp4ec, the cause of the problem lies in an important component of the creation of two iTunes and iCloud applications on Windows called Bonjour. Links to files that have been 'forgotten' by the developers are not enclosed in quotation marks. This has allowed bad guys to spread ransomware.
Often, ransomware will be blocked by anti-virus applications. But when run under the guise of being an Apple application, they will bypass anti-virus applications. Taking advantage of this, the bad guy installed a ransomware named BitPaymer.
This bug has been patched by Apple in iTunes updates 12.10.1 and iCloud 7.14. However, for Windows computers that have installed these two software before, this patch cannot fully address the vulnerability.
According to Morp4ec, after installation, Bonjour will separate as a separate software. So many computers have removed iTunes many years ago but Bonjour is still there and works in the background, even updated continuously. To remove Bonjour, users must remove it separately.
- Google discovered a dangerous zero day vulnerability on many Samsung Galaxy, Huawei, Xiaomi and even Pixel phones
- Serious vulnerability discovered to allow jailbreak iPhone 4s to iPhone X permanently, Apple can not patch?
You should read it
- 7 kinds of ransomware you didn't expect
- Theory - What is Ransomware?
- [Infographic] 7 effective ways to protect businesses from Ransomware
- Learn about Ransomware: 6 ransomware on computers
- Theory - Ransomware part 2
- Ako ransomware is raging all over the world, what do you know about this ransomware?
- Is Ransomware Annabelle scary with Annabelle movies?
- New tool Shifr RaaS allows anyone to create ransomware easily
- List of the 3 most dangerous and scary Ransomware viruses
- Discovered new ransomware on Mac computers
- Shade ransomware, the nightmare of 5 years ago is showing signs of returning
- Detect and prevent Ransomware with CyberSight RansomStopper
May be interested
Xiaomi designed a new smartphone: 2 selfie cameras at the edge of the bezel
Users cannot uninstall Edge browser on Windows 10
Apple Mail error can cause data loss in macOS Catalina
iOS 13.2 Beta 2 turns some iPad models into bricks, updates are not available
Xiaomi launched Haylou LS01 smartwatch, 14-day battery, priced at VND 330,000
Safari on Apple's iOS 13 collects and sends user data to Tencent