Skip to main content

Apple to alert affected users about major iOS security breach

App Store
arisara / Shutterstock.com
While Apple says it so far has no evidence suggesting that malware-infected apps discovered recently in its iOS store have stolen personal data or caused any other issues for users, it’ll nevertheless be contacting anyone who’s downloaded one or more of the infected apps with advice on what steps to take.

A Q&A posted by the Cupertino company on Tuesday aimed to ease the concerns of iPhone and iPad users who fear they may be using infected apps built with a modified version of Xcode, Apple’s app-building tool. The incident, which first hit the headlines over the weekend, is believed to be the most serious security breach in the App Store’s seven-year history.

Initial reports suggested around 40 apps were carrying the malware – among them Chinese messaging app WeChat and China-based Uber competitor Didi Kuaidi – though other reports have suggested a far higher number.

Apple responds

Responding to the issue in the Q&A, Apple said it’d removed infected apps that it’s aware of from its iOS App Store and is now blocking submissions of new apps that contain the malware.

“We’re working closely with developers to get impacted apps back on the App Store as quickly as possible for customers to enjoy,” the tech giant said, at the same time promising to release a list of the top 25 most popular apps impacted by the malware “so users can easily verify if they have downloaded the latest versions of these apps.”

The company confirmed it’ll be contacting customers who downloaded an app/apps that could have been compromised, adding, “Once a developer updates their app, that will fix the issue on the user’s device once they apply that update.”

Developers who created the malware-ridden software did so without realizing. Their mistake was to grab Xcode from a third-party site instead of from Apple’s own, as the version they downloaded had been altered to ensure apps created with the tool would incorporate the malicious software.

Some developers, mostly based in China, are known to head to third-party sites for the tool because they offer a faster download time. Apple is urging developers to stick with its own site for the tool, and is also promising to work on speeding up download times.

Security firm Palo Alto Networks (PAN) said the malware potentially impacts “hundreds of millions of users,” and described the malicious software as “a very harmful and dangerous malware that has bypassed Apple’s code review and made unprecedented attacks on the iOS ecosystem.”

Editors' Recommendations

Trevor Mogg
Contributing Editor
Not so many moons ago, Trevor moved from one tea-loving island nation that drives on the left (Britain) to another (Japan)…
The 6 biggest iOS 17 features that Apple stole from Android
iOS 17 logo on an iPhone, Android logo on an Android phone.

Apple made a big splash at WWDC 2023 this year, with the big headline announcement being the Vision Pro augmented reality headset. But we also got a glimpse of what’s to come with iOS 17, iPadOS 17, watchOS 10, and macOS 14 Sonoma.

Though iOS 17 appears to be more of a quiet release this year that focuses on refinement and quality-of-life improvements, I have mixed feelings overall. To be honest, I was a little underwhelmed with the iOS 17 announcement based on what was actually shown off on stage, but there are some very cool features that Apple didn’t make a big deal out of (when it should have).

Read more
11 features in iOS 17 that I can’t wait to use on my iPhone
ios 17 11 features i cant wait to use on my iphone mashup

Apple made a big splash at WWDC 2023 this year as it introduced the first major new product since the Apple Watch with the Vision Pro spatial computing headset. But of course, we also got software announcements for iOS 17, iPadOS 17, watchOS 10, and macOS 14 Sonoma.

Though I feel that iOS 17 is an overall underwhelming update compared to the past few years with iOS 14 and iOS 16, there’s still a lot of interesting stuff coming. The developer beta is out now, and people have been diving into all that iOS 17 has to offer so far. And you know what? There’s plenty to talk about — including a few things Apple didn't even mention during the keynote.

Read more
Apple finally fixed my biggest problem with the iPhone 14 Pro Max
apple fixed my biggest problem with iphone 14 pro max 1443

Good battery life is a well-known trait of the iPhone. As a battery-anxious person, it's one of the reasons why I shifted to iOS. The iPhone 13 Pro Max took it to the next level with excellent battery optimization that would see the phone last me an entire day with ease – no matter how heavy the usage. The same didn’t happen when I shifted to the iPhone 14 Pro Max. And it was primarily due to iOS 16. The initial versions, up until iOS 16.4, were buggy and bad with battery optimization.

I was about to move back to Android, but iOS 16.5 has me hooked. The update is one of the best in the recent past from Apple. While I’ve been testing iOS 17 for the past week on another iPhone, I installed iOS 16.5 in late May on my primary phone – the iPhone 14 Pro Max — and I’m extremely happy with what Apple has done with this version.
The iPhone 14 Pro Max's battery problem has finally been fixed
The chart shows 50% battery left after using the iPhone 14 Pro Max for 5 hours and 43 minutes. Prakhar Khanna/Digital Trends

Read more