SabPub Trojan Strikes Again on Mac platform
SabPub is another malware targeting Macs.
I heard that it can penetrate through ordinary anti-virus,
So how can I avoid this malware?
SabPub is another malware targeting Macs.
I heard that it can penetrate through ordinary anti-virus,
So how can I avoid this malware?
Hi there,
A security researcher named Costin Raiu working at the Kaspersky Lab has discovered another Mac OS X Trojan virus. It is called Backdoor.OSX.SabPub.a or simply “SabPub”. Actually, there are already two variations of the SabPub virus that are being distributed by means of Java exploits. The virus utilizes Java exploits to contaminate a Macintosh computer then it will connect to a remote website and will then wait for instructions.
The possible instructions may include taking of screenshots of the Mac computer and most especially running commands. The Trojan virus acts as a remote control being controlled on a remote computer and executes every command it receives. According to Costin Raiu, the Java exploits appear to be very standard and have been concealed by means of ZelixKlassMaster which is a flexible and somewhat powerful Java obfuscator.
The discovery of the SabPub virus happened after a heightened alert against the Flashback Trojan virus which already infected more than 600,000 Macintosh computers all over the world. The first variant of the SabPub virus was discovered around February of 2012,and the manner of infection appears to be in targeted attacks.
This limits the ability of the virus to make widespread invasions like what the Flashback Trojan virus did. The second variant of the SabPub virus which was already named above was somewhat distributed as a DOC file.