AceDeceiver is the first iOS malware to exploit certain design flaws in Apple FairPlay DRM in order to install malicious apps on iOS devices, even those that are not jailbroken!!

Hackers are exploiting a flaw affecting Apple's digital rights management technology (DRM) to install malicious apps on any iOS device.
https://www.secnews.gr/102304/ethihak-live-hacking-contest-teleytaia-dekada/btn-large” variation=”btn-success”]EthiHak Live Hacking Contest: ENTRY CLOSES! Catch the last 10 today!!!
Last month, security experts at Palo Alto Networks discovered three malicious applications in the official App Store that were designed to steal Apple IDs and passwords from Chinese users. The interesting part of this discovery is the ability of these three applications to be secretly installed via software running on Windows machines.
The only way to install a mobile app on a non-jailbroken iOS device is to manually download it from the official App Store or install it via the iTunes software on your computer. In this second scenario, the device verifies the valid origin of the app with the help of Apple's FairPlay DRM technology.
In 2014, a team of researchers from the Georgia Institute of Technology presented at the USENIX conference a method by which an iOS device could be tricked into installing any app, via iTunes. At this point, the attack scenario is clear: hackers can remotely install apps on any iOS device connected to an infected PC.
https://www.secnews.gr/102163/free-pdf-password-remover-software/Read: Break PDF passwords with 4 Free Password Remover Software! 😉
Threat actors first upload their apps to the App Store, managing to get past the Apple review process by declaring them as wallpapers. Once the apps appear on the official store, they purchase the apps through iTunes in order to obtain the DRM FairPlay authorization code.
The malicious criminals then develop client software that emulates iTunes and distribute it in China disguised as a helper program for iOS devices that can perform the following functions: system reinstallation, jailbreaking, system backup, device management, and system cleaning.
When users connect their iOS devices to a computer running this software, AceDeceiver is silently and secretly installed using the authorization code received when the app first appeared in the official store.

