Sunday, July 30, 2017

Mac users could be at risk, WikiLeaks finds more hacking tools

Mac users could be at risk, WikiLeaks finds more hacking tools
DECCAN CHRONICLE.
Published Jul 30, 2017, 6:01 pm ISTUpdated Jul 30, 2017, 9:02 pm IST

http://www.deccanchronicle.com/technology/in-other-news/300717/mac-users-could-be-at-risk-wikileaks-finds-more-hacking-tools.html
http://www.deccanchronicle.com/technology/in-other-news/300717/mac-users-could-be-at-risk-wikileaks-finds-more-hacking-tools.html

4 comments:

  1. SeaPea is a persistent Python script (re-installs itself over HD formatage) that read/write files on HD.

    Targets: Mac OS X 10 (Snow Leopard + Lion)

    SeaPea needs a script named iTunesWorkerSystem. in the startup directory.

    The implant will be installed in /var/.ptm.log. and it requires the super-elite rights

    wikileaks.org - wikileaks.org/vault7/document/SeaPea-User_Guide/SeaPea-User_Guide.pdf

    ReplyDelete
  2. You are welcome, I just read the PDF...
    If you are interested, the other release of the 27th was Imperial- Aeris

    Aeris is a non-persistent Python script (any name) that ex-filtrate files from HD.

    Targets: Debian/Red Hat servers/Solaris/CentO
    Aeris includes a tarball that contains a patched Postfix-2.10.0 suitable on Ubuntu 12 Server

    The installation requires the root password and have the targeted computer.

    It works fine with crypted HD, and re-crypt the files before exfiltration.
    The working area is /var/www/{static implant ID}/update.pkg
    wikileaks.org - wikileaks.org/vault7/document/Aeris-UsersGuide/Aeris-UsersGuide.pdf

    ReplyDelete