Hyper-targeted attack against 13 iPhones dropped malicious apps via MDM

Hyper-targeted attack against 13 iPhones dropped malicious apps via MDM

6 years ago
Anonymous $TjsaxHwAP-

https://arstechnica.com/information-technology/2018/07/hyper-targeted-attack-against-13-iphones-dropped-malicious-apps-via-mdm/

In what appears to be a case of highly focused social engineering against a small group of iPhone users, malicious actors managed to get 13 iPhones registered on their rogue mobile device management (MDM) servers and then pushed out applications that allowed the hackers to track the locations of the phones and read victims' SMS messages.

The attacks, reported by Cisco's Talos, used the "BOptions" sideloading technique to modify versions of legitimate applications, including WhatsApp and Telegram. The initiative inserted additional libraries into the application packages, and the modified applications were then deployed to the 13 victim iPhones via the rogue mobile device management systems.