Skip to main content

New iOS malware in China hijacks apps and forces full-page ads in Safari

the iphones switch control has opened up a world of possibility for quadriplegic todd stabelfeldt apple iphone 6s 7859 1500x1
Jessica Lee Star/Digital Trends
Malware on iOS is starting to become a weekly news event. This week’s intrusive software comes in the form of YiSpecter, a program capable of taking over iOS and displaying full-page ads on Safari.

The new malware, which is making the rounds in China and Taiwan, offers ways to circumvent the government’s Internet censorship. It persuades users to download a private version of QVOD, a defunct media player used for sharing pornography and other illegal content in China. QVOD was shut down in 2014 after police raided the developer’s offices, but it is still incredibly popular in China’s underground Web as a portal to illegal content.

Recommended Videos

Once the app is downloaded, YiSpecter tricks iOS SpringBoard — the software that manages the on-screen icons on iOS — to stop users from uninstalling the app. It then blends into the background, hiding under one of the many system apps on iOS.

YiSpecter is able to “replace existing apps with those it downloads, hijack other apps’ execution to display advertisements, change Safari’s default search engine, bookmarks and opened pages, and upload device information,” according to Palo Alto Networks. A Chinese mobile advertising service was allegedly responsible for the malicious app.

Luckily, Apple acknowledged the problem quickly and removed the app.

“We advise customers to stay current and only download content from the App Store and trusted sources … This particular vulnerability was indeed fixed in iOS 9.0,” an Apple spokesperson said to CNET.

News of the YiSpecter attack follows last week’s Chinese malware panic, which was caused by several high-profile developers who used a faulty version of Xcode to build apps. Those apps have since been purged from the App Store and replaced with apps built on a legitimate version of Xcode.

The YiSpecter attack is another case that proves China’s wild west approach to app curation is not working. Without checks in third-party apps stores, it’s easy for malicious programs to bypass iOS security.

David Curry
Former Digital Trends Contributor
David has been writing about technology for several years, following the latest trends and covering the largest events. He is…
The iPhone 17 Pro Max may slim down this particular feature
The Dynamic Island on the iPhone 14 Pro Max.

The iPhone's Dynamic Island is expected to get even smaller on the iPhone 17 series, according to technology analyst Jeff Pu (via MacRumors).

According to Pu, in a research note with investment bank Haitong International, the iPhone 17 Pro Max will offer a “metalens” for Face ID. Because of this, the Dynamic Island will be “much narrowed.”

Read more
If you aren’t already using the Apple Sports app, you need to
The Apple Sports app running on an iPhone 16.

Friends, we are well into the best time of the year: football season. The Lions are off to an incredible start, the Vikings look dangerously good, and I'm continually amazed by how bad the Browns are.

The 2024 season has been a lot of fun. Not only have the games been entertaining, but I've also had a much better time following the latest plays and scores on my phone. After begrudgingly using the ESPN app last year and the year before, I decided to go all-in on Apple Sports this year — and I couldn't be happier. If you have an iPhone and aren't already using Apple Sports, this is your reminder that you absolutely need to.
A clean, simple, and ad-free interface

Read more
The iOS 18.2 beta, with new Apple Intelligence features, is here
iOS 18.2 update notification on an iPhone.

Apple has just rolled out the first beta of iOS 18.2, merely a day after seeding a release candidate version of the iOS 18.1 build. The latest beta brings some of the biggest Apple Intelligence features to the table.

The first one is ChatGPT integration. When users bring up Siri and ask it a question the assistant can’t handle, the request will be offloaded to OpenAI’s ChatGPT. “Users are asked before any questions are sent to ChatGPT, along with any documents or photos, and Siri then presents the answer directly,” Apple says.

Read more