The news is by your side.

ATTENTION iOS users! Protect your iPhone against a new Trojan virus; Know the steps here

0

Protect your iPhones with these measures against the latest trojan virus targeting Face ID data for bank theft.

New Delhi: The first-ever banking Trojan created specifically for iOS devices has surfaced, changing the cybersecurity landscape and making huge strides in iPhone security. The malware once known as GoldDigger and mainly discovered on Android smartphones has since changed its name to GoldPickaxe and is now capable of exploiting iPhones with advanced features.

Here you will find all the details about the virus and how you can protect yourself against it.

Understanding the Threat: GoldPickaxe Trojan Virus

First discovered in October, this malicious software, which can infect both Android and iOS platforms, specifically targets iPhone users. Once it infiltrates iPhones, GoldPickaxe collects sensitive data such as facial recognition information, identity documents, and intercepted text messages. This data is then used to facilitate unauthorized access to various banking and financial applications, making it easy for cybercriminals to drain victims' accounts.

Additionally, TechRadar reported that the captured biometric data is used to create AI-generated deepfakes, effectively allowing fraudsters to pose as victims.

Currently, the GoldPickaxe trojan appears to be targeting individuals in Vietnam and Thailand, with expectations of global expansion looming. However, there are concerns that its success in these regions could prompt its makers to expand their reach into English-speaking countries such as the United States and Canada, potentially putting iPhone and Android users there at risk.

How does GoldPickaxe attack iPhones?

While installing malicious apps and other phishing techniques are common methods to break into Android devices, breaking into iPhones is more difficult due to Apple's tightly regulated ecosystem. Nevertheless, astute hackers initially managed to spread the GoldPickaxe.io Trojan by successfully taking advantage of TestFlight, Apple's mobile application testing infrastructure. After being kicked out of TestFlight, the hackers used social engineering techniques to trick victims into installing a Mobile Device Management (MDM) profile, giving them full access to the compromised iPhone.

Cybersecurity firm Group-IB discovered a new GoldPickaxe variant, which they attribute to a lone threat actor called GoldFactory, responsible for creating both versions of the virus. This variety is known as GoldDiggerPlus. The software has been tweaked to allow hackers to make live calls from compromised devices, adding a worrying new element to the ever-changing threat landscape.

How to secure your iPhones

  • Avoid TestFlight: Minimize the use of TestFlight for installing apps unless absolutely necessary, as this method can expose your device to potential security risks.
  • MDM profiles: Install Mobile Device Management profiles only if explicitly instructed by your employer for company-issued iPhones.
  • Malware scanning: Although Apple limits the availability of antivirus apps on iOS, consider solutions like Intego Mac Internet Security X9 or Intego Mac Premium Bundle Mac are connected.
  • Lockdown Mode: For those with heightened security concerns, consider activating Lockdown Mode despite possible limitations on app functionality.
  • Stolen Device Protection: Make sure Apple's Stolen Device Protection feature is activated to protect your iPhone in case of theft.

While the threat of iPhone malware is a reality, adhering to vigilant cyber hygiene practices and minimizing unnecessary risks can help protect your devices from potential exploitation by hackers.



Leave A Reply

Your email address will not be published.