First Known OS X Ransomware Spotted in the Transmission BitTorrent App

Advertisement
By Reuters | Updated: 8 March 2016 11:50 IST
Apple Inc customers were targeted by hackers over the weekend in the first campaign against Macintosh computers using a pernicious type of software known as ransomware, researchers with Palo Alto Networks Inc told Reuters on Sunday.

Ransomware, one of the fastest-growing types of cyber threats, encrypts data on infected machines, then typically asks users to pay ransoms in hard-to-trace digital currencies to get an electronic key so they can retrieve their data.

Security experts estimate that ransoms total hundreds of millions of dollars a year from such cyber criminals, who typically target users of Microsoft Corp's Windows operating system.

Palo Alto Threat Intelligence Director Ryan Olson said the "KeRanger" malware, which appeared on Friday, was the first functioning ransomware attacking Apple's Mac computers.

Advertisement

"This is the first one in the wild that is definitely functional, encrypts your files and seeks a ransom," Olson said in a telephone interview.

Advertisement

Hackers infected Macs through a tainted copy of a popular program known as Transmission, which is used to transfer data through the BitTorrent peer-to-peer file sharing network, Palo Alto said on a blog posted on Sunday afternoon.

When users downloaded version 2.90 of Transmission, which was released on Friday, their Macs were infected with the ransomware, the blog said.

Advertisement

An Apple representative said the company had taken steps over the weekend to prevent further infections by revoking a digital certificate that enabled the rogue software to install on Macs. The representative declined to provide other details.

Transmission responded by removing the malicious version of its software from its website, www.transmissionbt.com. On Sunday it released a version that its website said automatically removes the ransomware from infected Macs.

Advertisement

The website advised Transmission users to immediately install the new update, version 2.92, if they suspected they might be infected.

Palo Alto said on its blog that KeRanger is programmed to stay quiet for three days after infecting a computer, then connect to the attacker's server and start encrypting files so they cannot be accessed.

After encryption is completed, KeRanger demands a ransom of 1 Bitcoin, or about $400 (roughly Rs. 27,000), the blog said.

Olson, the Palo Alto threat intelligence director, said that the victims whose machines were compromised but not cleaned up could start losing access to data on Monday, which is three days after the virus was loaded onto Transmission's site.

Representatives with Transmission could not be reached for comment.

© Thomson Reuters 2016

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Further reading: Apple, Laptops, Malware, PC, Ransomware
Advertisement

Related Stories

Popular Mobile Brands
  1. Here's How Much the Samsung Galaxy S26 Series Might Cost in South Korea
  2. Nothing Phone 4a Pro Spotted on Geekbench With This Snapdragon Chipset
  3. Tecno Pova Curve 2 5G Launches in India With Massive 8,000mAh Battery
  4. Panasonic Refreshes Residential AC Lineup With Nanoe Technology, IoT Features
  5. Poco X8 Pro Max Visits Indonesia Certification Database, Could Launch Soon
  6. God of War Sons of Sparta, a 2D Platformer With Young Kratos, Is Now Out
  7. These Premium Claude Features Are Now Available to All Users
  1. Astronomers Witness Rare Failed Supernova in Andromeda Galaxy
  2. Unique Inside-Out Planetary System Reveals Unexpected Rocky World on the Outer Edge
  3. Google Chrome Brings Convenient Pinned Tabs Feature to Android Smartphone Owners
  4. Poco C81 Pro Appears on Thailand's NBTC Certification Database, Might Launch Soon
  5. Google Adds Gemini-Powered Audio Summaries to Google Docs
  6. BenQ GW90TC Series Monitors Launched in India With Up to 27-Inch Displays, USB Type-C Connectivity
  7. Nvidia Launches GeForce Now App for Select Amazon Fire TV Stick Models
  8. John Wick, God of War, Ghost of Yotei Legends: Everything Announced at State of Play
  9. Sony WH-1000XM6 Now Available in Sand Pink Colour Variant in India: Price, Availability, Features
  10. GST (Ghosts in Trouble) Out on Prime Video: Know Everything About This Kannada Comedy Drama Film
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.