What's new

General How to protect against ‘GoldPickaxe': The First iPhone Trojan (1 Viewer)

G General Forum

Old School

Senior Moderator
Moderator
Jan 26, 2024
1,637
670
1,000



1708195343939.png

An Android trojan called GoldDigger surfaced last year that can steal biometric data and more from victims to compromise their bank accounts. The threat has evolved into the GoldPickaxe trojan that can infect both iOS and Android. Fortunately, there are several simple ways to protect against the first iPhone trojan, here’s what you should know.
iPhone trojan background
GoldPickaxe was discovered by security firm Group-IB which believes it is the world’s first iOS trojan.
When installed on an iPhone, the malware can collect a user’s biometric information from photos, SMS text messages, intercept web activity, and more. In some cases, victims are contacted by malicious parties posing as bank representatives asking for information like pictures of ID cards.
With AI-based tools, the threat actors can then hack a user’s bank account.
Who’s being targeted?
For now, the GoldPickaxe iPhone trojan has been targeting users in Vietnam and Thailand (by mimicking more than 50 apps from financial institutions).
However, Group-IB says that the GoldPickaxe iOS/Android trojan and the previous GoldDigger and GoldKefu trojans “are in the active stage of evolution” so it’s important to remain vigilant.
How is it distributed?
While the iPhone trojan was first found distributed through the iOS TestFlight beta testing system, Apple was able to shut that down (at least for now).
However, the latest evolution has been GoldPickaxe being distributed through malicious iOS mobile device management (MDM) profiles.How to protect against iPhone trojan ‘GoldPickaxe’
  1. Don’t install an iPhone app through Apple’s TestFlight unless you fully trust the developer and can verify it is legitimate
    • Install apps through the App Store, and even then, it’s best to verify the developer to make sure it is what you think it is
  2. Don’t install an iPhone MDM profile unless you fully trust the source and can verify it’s legitimate (e.g. comes directly from your IT administrator, place of work, trusted institution, etc.)
  3. Don’t share personal/sensitive information (including photos of yourself or ID cards) through phone calls, video calls, or other communication if a party reaches out to you
  4. If you have concerns about a financial account, log in directly at the bank/institution’s website to check into the situation – don’t call numbers or click links that were sent to you
  5. Keep your iPhone updated with the latest software from Apple – that now includes Rapid Security Response updates that arrive in between regular releases
For a detailed look at how GoldPickaxe works, check out the full post from Group-IB.
Source: Protect against iPhone trojan GoldPickaxe: How-to - 9to5Mac
 

Users who are viewing this thread

Reply