Protect yourself from massive iOS security breach.

False versions of Xcode may have gotten into your apps; here's how to fix the problem.

Apple has now been affected by the worst security snafu in iOS history when it found that hundreds of apps, mostly in the Chinese App Store, have malicious code in them, called “XcodeGhost.”

Apple’s pulled the affected apps from the App Store to contain the security breach, but you’ll still need to take a few more steps to make sure your iOS devices aren’t affected. Here’s what you need to do.

The otherwise legit apps were infected by developers who used a counterfeit version of Xcode from Chinese file-sharing service, Baidu, since it was faster to download than the official Apple version of Xcode. Doing so, however, caused the bad code to proliferate and cause this massive iOS security breach.

Since Apple doesn’t allow access to any API’s that a security company would need to know whether malicious code was in any installed apps, says mobile security firm Lookout, you have to protect yourself manually.

  • First off, keep an eye out for any odd dialogue boxes that show up on your screen. Don’t enter any information without being sure of the source.
  • If you’re running any of the affected apps — delete them and wait for a developer patch.
    • WeChat
    • Didi Chuxing
    • Angry Birds 2
    • NetEase
    • Micro Channel
    • IFlyTek input
    • Railway 12306
    • The Kitchen
    • Card Safe
    • CITIC Bank move card space
    • China Unicom Mobile Office
    • High German map
    • Jane book
    • Eyes Wide
    • Lifesmart
    • Mara Mara
    • Medicine to force
    • Himalayan
    • Pocket billing
    • Flush
    • Quick asked the doctor
    • Lazy weekend
    • Microblogging camera
    • Watercress reading
    • CamScanner
    • CamCard
    • SegmentFault
    • Stocks open class
    • Hot stock market
    • Three new board
    • The driver drops
    • OPlayer
    • Mercury
    • WinZip
    • PDFReader
    • Perfect365
    • PDFReader Free
    • WhiteTile
    • IHexin
    • WinZip Standard
    • MoreLikers2
    • CamScanner Lite
    • MobileTicket
    • iVMS-4500
    • OPlayer Lite
    • QYER
    • golfsense
    • Ting
    • Golfsensehd
    • Wallpapers10000
    • CSMBP-AppStore
    • MSL108
    • snapgrab copy
    • iOBD2
    • PocketScanner
    • CuteCUT
    • AmHexinForPad
    • SuperJewelsQuest2
    • air2
    • InstaFollower
    • CamScanner Pro
    • baba
    • WeLoop
    • DataMonitor
    • MSL070
    • nice dev
    • immtdchs
    • OPlayer
    • FlappyCircle
    • BiaoQingBao
    • SaveSnap
    • Guitar Master
    • jin
    • WinZip Sector
    • Quick Save
  • If any of the listed apps is on your iPhone or iPad, change your Apple account password and be wary of any phishing attempts to get it.


Leave a Reply

Fill in your details below or click an icon to log in: Logo

You are commenting using your account. Log Out /  Change )

Google photo

You are commenting using your Google account. Log Out /  Change )

Twitter picture

You are commenting using your Twitter account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s