YiSpecter Malware Affecting Jailbroken, Non-Jailbroken iOS Devices: Report

Advertisement
By Manish Singh | Updated: 6 October 2015 11:52 IST

A new malware called YiSpecter has been found that affects both jailbroken as well as non-jailbroken devices in Taiwan and China. Once a device is infected, YiSpecter allows the installation of unwanted apps, replaces legitimate apps, and displays full-screen advertisements amongst creating other chaos. The malware has been in the wild for over 10 months, and almost every security suite fails to detect it.

Just two weeks after researchers found several apps featuring XcodeGhost malware on the China App Store, security firm Palo Alto Networks reports about a new malware for iOS that can launch arbitrary iOS apps, force ads as well as change bookmarks and default search engine in Safari. Furthermore, the malware can also send user information back to its server. If that wasn't alarming enough, do note that it's not easy to get rid of the malware, as it reappears after you delete it.

The firm noted that YiSpecter is unusually different from any other malware we've seen on iOS over the years. And that begins right off with how it spreads. It began as an app that allows users to view free porn then infects those devices. It then hijacks traffic from ISPs to infect more devices. It also exists as a Windows worm that affects an IM service, and at last its roots have also been found on online communities and forums where its fake promotions are done.

Advertisement

(Also See: Apple's iOS App Store Suffers First Major Attack)

Also, the malware affects both jailbroken and non-jailbroken devices by manipulating with private APIs. The APIs in question consist of four components that are signed with enterprise certificates to look authentic and download each other from a centralised server. Three of these components hide their icons from iOS SpringBoard, the app that runs the home screen, and use fake aliases to fool security suites.

Advertisement

(Also See: XcodeGhost Impacted More Than 4,000 Apps, Say Researchers)

The malware appears just two weeks after at least more than three dozen malicious apps were found in the App Store, potentially affecting as many as millions of users. The security firm reports that it has identified 23 different samples of YiSpecter, many of which have been publicly available since last year. Apple is yet to acknowledge the existence of this malware.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. ACT Fibernet Launches New Broadband Plans With Free OTT Subscriptions
  2. OnePlus 15R Surfaces on Benchmarking Site Ahead of India Launch
  3. Apple Announces App Store Awards 2025 Winners: Check List
  4. Flipkart Buy Buy 2025 Sale: Nothing Phone 3, Phone 3a Deals Revealed
  5. Xiaomi May Launch This Tri-Fold Phone to Rival the Samsung Galaxy Z TriFold
  6. Flipkart Buy Buy 2025 Sale With Discounts on iPhone 16 Begins on This Date
  7. Motorola Edge 70 With Pantone's 2026 Colour, Swarovski Crystals Launched
  8. HMD 101, HMD 100 With Built-In Radio Launched in India at These Prices
  9. FaceTime, Snapchat Video Calls Have Reportedly Been Blocked in Russia
  10. Realme Says It Will Launch Two New Narzo Smartphones in India Soon
  1. Airtel Discontinues Two Prepaid Recharge Packs in India With Data Benefits, Free Airtel Xtreme Play Subscription
  2. NotebookLM App Gets an In-Built Camera, Lets Users Upload Images as a Source
  3. HMD 101 Launched in India With 1,000mAh Battery, Auto Call Recording Alongside HMD 100: Price, Features
  4. Crypto Traders Await US Fed Signals as Bitcoin Price Drops to $91,900
  5. Nothing Phone 3a Lite Goes on Sale in India: See Price, Offers, Availability
  6. Realme Narzo Phones Confirmed to Launch in India Soon via Amazon
  7. Samsung Galaxy Watch Ultra 2 Launch Timeline Leaked; Could Debut Alongside Samsung Galaxy Watch 9
  8. Samsung Galaxy S26 Series May Get Exynos 2600 Chipset Exclusively in South Korea: Report
  9. Apple’s FaceTime Reportedly Blocked in Russia Alongside Snapchat’s Video Calling Feature
  10. Anthropic Releases New Claude Tool That Interviews Users About Their AI Usage
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.