{"id":265,"date":"2013-05-24T22:05:54","date_gmt":"2013-05-24T21:05:54","guid":{"rendered":"http:\/\/www.yanael.com\/?p=265"},"modified":"2013-05-24T22:05:54","modified_gmt":"2013-05-24T21:05:54","slug":"nouveau-botnet-sur-mac-apple-os-x","status":"publish","type":"post","link":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/","title":{"rendered":"Nouveau Botnet sur MAC – Apple OS X"},"content":{"rendered":"

Voil\u00e0 \u00e7a c\u2019est fait \ud83d\ude09<\/p>\n

In\u00e9vitablement un spyware a de nouveau \u00e9merg\u00e9 la semaine derni\u00e8re. Un sp\u00e9cialiste en s\u00e9curit\u00e9 allemand aurait d\u00e9couvert ce botnet l\u00e2ch\u00e9 sur la toile depuis le mois de D\u00e9cembre via une campagne de phishing (entre autre). Un Backdoor qui ouvre une connexion \u00e0 un serveur de contr\u00f4le et de commande Roumain et est capable de surveiller les zombies et prendre des screenshots (entre autre) ont d\u00e9clar\u00e9 les sp\u00e9cialistes de F-Secure. Les premiers \u00e9chantillons se connectent \u00e0 des serveurs situ\u00e9s en France, et en Hollande.<\/p>\n

L’aspect surprenant de ce malware est qu’il est sign\u00e9 par un certificat de d\u00e9veloppeur d’Apple valide, qui a depuis \u00e9t\u00e9 r\u00e9voqu\u00e9. L’utilisation de l’identifiant Apple valide permet au logiciel malveillant de contourner Gatekeeper protection d’Apple dans OS X. Gatekeeper est nouveau pour Mountain Lion et OS X Lion 10.7.5 et est un param\u00e8tre qui donne \u00e0 l’utilisateur le droit de controler les appareils Apple et d\u2019y t\u00e9l\u00e9charger des apps avec 3 options Apple Store uniquement, App store, et dev avec un identifiant Apple\u2026<\/p>\n

Le logiciel malveillant a \u00e9t\u00e9 d\u00e9couvert la semaine derni\u00e8re lors du Forum de la libert\u00e9 d’Oslo par le chercheur en s\u00e9curit\u00e9 et la confidentialit\u00e9 hacktiviste militant Jacob Appelbaum. Mieux connu pour son travail avec le projet Tor et son implication dans WikiLeaks, Appelbaum a trouv\u00e9 le spyware sur l’ordinateur d’un militant angolais. Quelques jours plus tard, les chercheurs de Norman rapport\u00e9 un lien entre KitM.A et les attaques d\u2019espionnage cibl\u00e9 de l’Inde connue comme l’op\u00e9ration gueule de bois. Alors que les objectifs initiaux \u00e9taient des organismes gouvernementaux et strat\u00e9gique au Pakistan, le groupe, dit Norman, a emm\u00e9nag\u00e9 dans l’espionnage industriel. Il a attaqu\u00e9 Telenor de Norv\u00e8ge, une grande entreprise de t\u00e9l\u00e9communications; Norman dit que le groupe a \u00e9galement frapp\u00e9 les entreprises dans l’industrie manufacturi\u00e8re, de l’arm\u00e9e et le secteur financier. Op\u00e9ration Gueule de bois, quant \u00e0 lui, utilise \u00e9galement le m\u00eame commandement et de contr\u00f4le et les infrastructures d’attaque que celui utilis\u00e9 dans les attaques de logiciels espions Mac.<\/p>\n

Tout \u00e7a pour dire, prot\u00e9gez vos MAC les gars, puis profitez pour signer un contrat a vie pour tous vos iphones, ipod, ipad, iwatch, iglasses, aie aie aie …<\/p>\n \n","protected":false},"excerpt":{"rendered":"

Voil\u00e0 \u00e7a c\u2019est fait \ud83d\ude09 In\u00e9vitablement un spyware a de nouveau \u00e9merg\u00e9 la semaine derni\u00e8re. Un sp\u00e9cialiste en s\u00e9curit\u00e9 allemand aurait d\u00e9couvert ce botnet l\u00e2ch\u00e9 sur la toile depuis le mois de D\u00e9cembre via une campagne de phishing (entre autre). Un Backdoor qui ouvre une connexion \u00e0 un serveur de contr\u00f4le et de commande Roumain […]<\/p>\n","protected":false},"author":6,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"image","meta":{"ngg_post_thumbnail":0},"categories":[4,32],"tags":[170,173,169,174,171,172,304,71],"yoast_head":"\nLe nouveau Botnet Roumain sur MAC OSX - Apple<\/title>\n<meta name=\"description\" content=\"Botnet sur MAC, eh oui, ca pique\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:title\" content=\"Le nouveau Botnet Roumain sur MAC OSX - Apple\" \/>\n<meta name=\"twitter:description\" content=\"Botnet sur MAC, eh oui, ca pique\" \/>\n<meta name=\"twitter:creator\" content=\"@ari0k\" \/>\n<meta name=\"twitter:site\" content=\"@ari0k\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"ari0k\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/\"},\"author\":{\"name\":\"ari0k\",\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/9e29ebede3b1978adbfcf2d0af50a879\"},\"headline\":\"Nouveau Botnet sur MAC – Apple OS X\",\"datePublished\":\"2013-05-24T21:05:54+00:00\",\"dateModified\":\"2013-05-24T21:05:54+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/\"},\"wordCount\":394,\"commentCount\":0,\"publisher\":{\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/aba6b325d853c0a1a94f3542c487c6d7\"},\"keywords\":[\"apple\",\"botnet\",\"faille\",\"gatekeeper\",\"mac\",\"macintosh\",\"S\u00e9curit\u00e9\",\"virus\"],\"articleSection\":[\"Informatique\",\"S\u00e9curit\u00e9\"],\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/\",\"url\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/\",\"name\":\"Le nouveau Botnet Roumain sur MAC OSX - Apple\",\"isPartOf\":{\"@id\":\"http:\/\/www.yanael.com\/wp\/#website\"},\"datePublished\":\"2013-05-24T21:05:54+00:00\",\"dateModified\":\"2013-05-24T21:05:54+00:00\",\"description\":\"Botnet sur MAC, eh oui, ca pique\",\"breadcrumb\":{\"@id\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Accueil\",\"item\":\"http:\/\/www.yanael.com\/wp\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Nouveau Botnet sur MAC – Apple OS X\"}]},{\"@type\":\"WebSite\",\"@id\":\"http:\/\/www.yanael.com\/wp\/#website\",\"url\":\"http:\/\/www.yanael.com\/wp\/\",\"name\":\"Tranches de Veek\",\"description\":\"404 - C'est comme la vie, mais en plus Geek !\",\"publisher\":{\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/aba6b325d853c0a1a94f3542c487c6d7\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"http:\/\/www.yanael.com\/wp\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"fr-FR\"},{\"@type\":[\"Person\",\"Organization\"],\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/aba6b325d853c0a1a94f3542c487c6d7\",\"name\":\"ari0k\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/8ce11527add5c4c8a0afb43e6cf75917?s=96&d=retro&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/8ce11527add5c4c8a0afb43e6cf75917?s=96&d=retro&r=g\",\"caption\":\"ari0k\"},\"logo\":{\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/image\/\"},\"sameAs\":[\"http:\/\/www.yanael.com\"]},{\"@type\":\"Person\",\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/9e29ebede3b1978adbfcf2d0af50a879\",\"name\":\"ari0k\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/2c51ca3338c41882e80fc5a17ad72e9b?s=96&d=retro&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/2c51ca3338c41882e80fc5a17ad72e9b?s=96&d=retro&r=g\",\"caption\":\"ari0k\"},\"sameAs\":[\"http:\/\/yanael.com\",\"tranches.de.veek\",\"https:\/\/twitter.com\/ari0k\"],\"url\":\"https:\/\/www.yanael.com\/wp\/author\/ari0k\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Le nouveau Botnet Roumain sur MAC OSX - Apple","description":"Botnet sur MAC, eh oui, ca pique","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/","twitter_card":"summary_large_image","twitter_title":"Le nouveau Botnet Roumain sur MAC OSX - Apple","twitter_description":"Botnet sur MAC, eh oui, ca pique","twitter_creator":"@ari0k","twitter_site":"@ari0k","twitter_misc":{"\u00c9crit par":"ari0k","Dur\u00e9e de lecture estim\u00e9e":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#article","isPartOf":{"@id":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/"},"author":{"name":"ari0k","@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/9e29ebede3b1978adbfcf2d0af50a879"},"headline":"Nouveau Botnet sur MAC – Apple OS X","datePublished":"2013-05-24T21:05:54+00:00","dateModified":"2013-05-24T21:05:54+00:00","mainEntityOfPage":{"@id":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/"},"wordCount":394,"commentCount":0,"publisher":{"@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/aba6b325d853c0a1a94f3542c487c6d7"},"keywords":["apple","botnet","faille","gatekeeper","mac","macintosh","S\u00e9curit\u00e9","virus"],"articleSection":["Informatique","S\u00e9curit\u00e9"],"inLanguage":"fr-FR","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/","url":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/","name":"Le nouveau Botnet Roumain sur MAC OSX - Apple","isPartOf":{"@id":"http:\/\/www.yanael.com\/wp\/#website"},"datePublished":"2013-05-24T21:05:54+00:00","dateModified":"2013-05-24T21:05:54+00:00","description":"Botnet sur MAC, eh oui, ca pique","breadcrumb":{"@id":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/www.yanael.com\/wp\/nouveau-botnet-sur-mac-apple-os-x-265\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Accueil","item":"http:\/\/www.yanael.com\/wp\/"},{"@type":"ListItem","position":2,"name":"Nouveau Botnet sur MAC – Apple OS X"}]},{"@type":"WebSite","@id":"http:\/\/www.yanael.com\/wp\/#website","url":"http:\/\/www.yanael.com\/wp\/","name":"Tranches de Veek","description":"404 - C'est comme la vie, mais en plus Geek !","publisher":{"@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/aba6b325d853c0a1a94f3542c487c6d7"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"http:\/\/www.yanael.com\/wp\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"fr-FR"},{"@type":["Person","Organization"],"@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/aba6b325d853c0a1a94f3542c487c6d7","name":"ari0k","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/8ce11527add5c4c8a0afb43e6cf75917?s=96&d=retro&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/8ce11527add5c4c8a0afb43e6cf75917?s=96&d=retro&r=g","caption":"ari0k"},"logo":{"@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/image\/"},"sameAs":["http:\/\/www.yanael.com"]},{"@type":"Person","@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/9e29ebede3b1978adbfcf2d0af50a879","name":"ari0k","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"http:\/\/www.yanael.com\/wp\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/2c51ca3338c41882e80fc5a17ad72e9b?s=96&d=retro&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/2c51ca3338c41882e80fc5a17ad72e9b?s=96&d=retro&r=g","caption":"ari0k"},"sameAs":["http:\/\/yanael.com","tranches.de.veek","https:\/\/twitter.com\/ari0k"],"url":"https:\/\/www.yanael.com\/wp\/author\/ari0k\/"}]}},"_links":{"self":[{"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/posts\/265"}],"collection":[{"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/users\/6"}],"replies":[{"embeddable":true,"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/comments?post=265"}],"version-history":[{"count":0,"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/posts\/265\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/media?parent=265"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/categories?post=265"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.yanael.com\/wp\/wp-json\/wp\/v2\/tags?post=265"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}