📺 Stream EntrepreneurTV for Free 📺

In First-Ever Campaign, Hackers Target Apple Users With Ransomware Security experts estimate that ransoms total hundreds of millions of dollars a year from cyber criminals, who typically target Windows users.

By Reuters

entrepreneur daily

This story originally appeared on Reuters

TungCheung | Shutterstock.com

Apple Inc. customers were targeted by hackers over the weekend in the first campaign against Macintosh computers using a pernicious type of software known as ransomware, researchers with Palo Alto Networks Inc. told Reuters on Sunday.

Ransomware, one of the fastest-growing types of cyber threats, encrypts data on infected machines, then typically asks users to pay ransoms in hard-to-trace digital currencies to get an electronic key so they can retrieve their data.

Security experts estimate that ransoms total hundreds of millions of dollars a year from such cyber criminals, who typically target users of Microsoft Corp.'s Windows operating system.

Palo Alto Threat Intelligence Director Ryan Olson said the "KeRanger" malware, which appeared on Friday, was the first functioning ransomware attacking Apple's Mac computers.

"This is the first one in the wild that is definitely functional, encrypts your files and seeks a ransom," Olson said in a telephone interview.

Hackers infected Macs through a tainted copy of a popular program known as Transmission, which is used to transfer data through the BitTorrent peer-to-peer file sharing network, Palo Alto said on a blog posted on Sunday afternoon.

When users downloaded version 2.90 of Transmission, which was released on Friday, their Macs were infected with the ransomware, the blog said.

An Apple representative said the company had taken steps over the weekend to prevent further infections by revoking a digital certificate that enabled the rogue software to install on Macs. The representative declined to provide other details.

Transmission responded by removing the malicious version of its software from its website. On Sunday it released a version that its website said automatically removes the ransomware from infected Macs.

The website advised Transmission users to immediately install the new update, version 2.92, if they suspected they might be infected.

Palo Alto said on its blog that KeRanger is programmed to stay quiet for three days after infecting a computer, then connect to the attacker's server and start encrypting files so they cannot be accessed.

After encryption is completed, KeRanger demands a ransom of 1 bitcoin, or about $400, the blog said.

Olson, the Palo Alto threat intelligence director, said that the victims whose machines were compromised but not cleaned up could start losing access to data on Monday, which is three days after the virus was loaded onto Transmission's site.

Representatives with Transmission could not be reached for comment.

(Editing by Jeffrey Benkoe and Sandra Maler)

Want to be an Entrepreneur Leadership Network contributor? Apply now to join.

Editor's Pick

Business News

Carnival Cruises Officially Installs Elon Musk's Starlink Internet on 100% of its Ships

Starlink is now the official internet for Carnival passengers.

Business News

Wegovy-Maker Presents Results of Its Longest Study Conducted So Far on Weight Loss — Here's What to Know

The company's data showed that the drugs were effective over multiple years, even if there are still unknowns.

Money & Finance

This Toxic Money Habit Is Becoming More Common — If You've Picked It Up, Your Finances Are at Serious Risk, Expert Warns

Kaitlin Walsh-Epstein, chief marketing officer at digital banking platform Laurel Road, reveals the frequent mistake.

Business News

Major U.S. Airlines Are Suing the Government Over 'Capricious' Fee Transparency Law

Southwest Airlines opted not to join the other airlines in the lawsuit.

Business News

'This Year Almost Broke Me': Tom Schwartz Reveals 'Scandoval' Almost Shut Down His Restaurant After Losing 80% of His Business

As Bravo's "Vanderpump Rules" ends its 11th season, longtime cast member, Tom Schwartz, and Schwartz & Sandy's business partner, Greg Morris, open up about how public scandal almost shuttered their restaurant — and how they kept it afloat.