Torrent Invites! Buy, Trade, Sell Or Find Free Invites, For EVERY Private Tracker! HDBits.org, BTN, PTP, MTV, Empornium, Orpheus, Bibliotik, RED, IPT, TL, PHD etc!



Results 1 to 2 of 2
Like Tree3Likes
  • 2 Post By Insideman
  • 1 Post By DGM

Thread: BitTorrent Client Transmission Infected With First Mac Ransomware

  1. #1
    Donor
    Insideman's Avatar
    Reputation Points
    72677
    Reputation Power
    100
    Join Date
    Dec 2012
    Posts
    4,446
    Time Online
    404 d 10 h 13 m
    Avg. Time Online
    2 h 24 m
    Mentioned
    1011 Post(s)
    Quoted
    454 Post(s)
    Liked
    4653 times
    Feedbacks
    44 (100%)

    BitTorrent Client Transmission Infected With First Mac Ransomware

    Transmission, one of the most used non-commercial BitTorrent clients, has the dubious honor of becoming the first OSX application to be infected by ransomware. Users who install the malicious application risk having their computers encrypted, with attackers demanding a Bitcoin payment to decrypt it.

    With millions of active users, Transmission is one of the most used BitTorrent clients around, particularly for Mac users.

    The application has been around for more than a decade and has a great reputation. However, this weekend several users started to report malware problems in the Transmission forums.

    The malware in question was identified as “OSX.KeRanger.A” and several users reported that it’s linked to Transmission 2.90.

    Today, their suspicions were confirmed by researchers from Palo Alto Networks who published a warning and an overview of the technical details on their website.

    “Attackers infected two installers of Transmission version 2.90 with KeRanger on the morning of March 4. When we identified the issue, the infected DMG files were still available for downloading from the Transmission site,” they write.

    KeRanger is so-called ransomware which effectively encrypts the victim’s computer. The attackers then promise to decrypt it if a ransom is paid, amounting to one Bitcoin in this case.

    “The malware then begins encrypting certain types of document and data files on the system. After completing the encryption process, KeRanger demands that victims pay one bitcoin (about $400) to a specific address to retrieve their files,” the researchers explain.

    “Additionally, KeRanger appears to still be under active development and it seems the malware is also attempting to encrypt Time Machine backup files to prevent victims from recovering their back-up data.”

    Apple was also informed about the issue and has since revoked the abused certificate and updated its XProtect antivirus signature.

    As Ars Technica points out, the “KeRanger” ransomware is notable as it’s the first Mac-targeted ransomware that’s been reported in the wild.

    The Transmission team, meanwhile, has added a warning message to their site, alerting users to upgrade their clients right away.

    “Everyone running 2.90 on OS X should immediately upgrade to 2.92, as they may have downloaded a malware-infected file. This new version will make sure that the ‘OSX.KeRanger.A’ ransomware is correctly removed from you computer,” the warning reads.
    DGM and poker like this.

  2. #2
    DGMDonor Icon
    DGM is offline
    iLLuSioNist
    DGM's Avatar
    Reputation Points
    77147
    Reputation Power
    100
    Join Date
    Aug 2015
    Posts
    4,744
    Time Online
    204 d 20 h 52 m
    Avg. Time Online
    1 h 32 m
    Mentioned
    969 Post(s)
    Quoted
    453 Post(s)
    Liked
    4014 times
    Feedbacks
    170 (100%)
    MAC is no more un-hackable

    They should change DMG extension to DGM
    bunnytherabbit likes this.
    DGM Says ! Be Busy Be Happy TI'ian. !



Tags for this Thread

Bookmarks

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
  •