Welcome to the MacNN Forums.

If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

You are here: MacNN Forums > News > Mac News > New malware stealing advertising revenue from jailbroken iOS devices

New malware stealing advertising revenue from jailbroken iOS devices
Thread Tools
NewsPoster
MacNN Staff
Join Date: Jul 2012
Status: Offline
Reply With Quote
Aug 20, 2014, 09:08 AM
 
A new piece of malware has started infecting jailbroken iOS devices earlier this year. The "AdThief" or "Spad" package hijacks advertising clicks and revenue, and redirects them to the author of the package, rather than the developer who inserted the advertising in the first place. The malware is simple and low profile -- it replaces the developer's ID with the attacker's ID. Mobile ad kits targeted by the AdThief malware are mostly from Chinese vendors, with four in the US, and a pair in India.

Publication Virus Bulletin has likely identified the original author as "Rover12421," who is known for Android hacks. In a public comment in March, he claimed that the package was "closed" and denies having anything to do with the release of the package.

Virus Bulletin (PDF) claims that 22 million ads have had income redirected, but it is unknown how much actual revenue this has generated. The package requires the Cydia Substrate, the layer that allows custom code to be loaded and execute on jailbroken devices. Without the substrate, the virus has no effect and can't install, so un-jailbroken devices remain immune to the attack.
( Last edited by NewsPoster; Aug 22, 2014 at 04:35 AM. )
     
msuper69
Professional Poster
Join Date: Jan 2000
Location: Columbus, OH
Status: Offline
Reply With Quote
Aug 20, 2014, 09:28 AM
 
Jailbreaking has consequences.
This is one of them.
Not surprised nor sympathetic.
     
ElectroTech
Dedicated MacNNer
Join Date: Nov 2008
Status: Offline
Reply With Quote
Aug 20, 2014, 10:13 AM
 
It is simple. Pay for your software and quit stealing it. Get an Android phone if you are a cheapskate thieving scum.
     
Spheric Harlot
Clinically Insane
Join Date: Nov 1999
Location: 888500128, C3, 2nd soft.
Status: Offline
Reply With Quote
Aug 20, 2014, 11:28 AM
 
There are other reasons for jailbreaking than being a cheapskate thieving scum.

Go argue politics if you are a pre-supposing judgemental guy.
( Last edited by Mike Wuerthele; Aug 20, 2014 at 11:43 AM. Reason: language on front page!)
     
climacs
Senior User
Join Date: Sep 2001
Location: in front of my computer
Status: Offline
Reply With Quote
Aug 20, 2014, 11:50 AM
 
"There are other reasons for jailbreaking than being a cheapskate thieving scum."

and no matter whether your motive(s) for jailbreaking are good or bad, you are still taking risks and this malware is one of those risks.
     
Spheric Harlot
Clinically Insane
Join Date: Nov 1999
Location: 888500128, C3, 2nd soft.
Status: Offline
Reply With Quote
Aug 20, 2014, 12:10 PM
 
Absolutely.
     
Charles Martin
Mac Elite
Join Date: Aug 2001
Location: Maitland, FL
Status: Offline
Reply With Quote
Aug 22, 2014, 04:38 AM
 
And this is exactly why I stopped jailbreaking my iPhone (and for the record, I never did so to pirate software; in my case it was done to unlock my out-of-contract iPhone years before AT&T allowed that). I always knew that at some point, the same vulnerabilities that allowed jailbreaking to happen at all were going to be use to introduce malware to the iPhone platform. It was inevitable.
Charles Martin
MacNN Editor
     
   
Thread Tools
 
Forum Links
Forum Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Top
Privacy Policy
All times are GMT -4. The time now is 06:17 AM.
All contents of these forums © 1995-2017 MacNN. All rights reserved.
Branding + Design: www.gesamtbild.com
vBulletin v.3.8.8 © 2000-2017, Jelsoft Enterprises Ltd.,