Mac users could be at risk, WikiLeaks finds more hacking tools
DECCAN CHRONICLE.
Published Jul 30, 2017, 6:01 pm ISTUpdated Jul 30, 2017, 9:02 pm IST
http://www.deccanchronicle.com/technology/in-other-news/300717/mac-users-could-be-at-risk-wikileaks-finds-more-hacking-tools.html
SeaPea is a persistent Python script (re-installs itself over HD formatage) that read/write files on HD.
ReplyDeleteTargets: Mac OS X 10 (Snow Leopard + Lion)
SeaPea needs a script named iTunesWorkerSystem. in the startup directory.
The implant will be installed in /var/.ptm.log. and it requires the super-elite rights
wikileaks.org - wikileaks.org/vault7/document/SeaPea-User_Guide/SeaPea-User_Guide.pdf
sherif shothe THANKS ...
ReplyDeleteYou are welcome, I just read the PDF...
ReplyDeleteIf you are interested, the other release of the 27th was Imperial- Aeris
Aeris is a non-persistent Python script (any name) that ex-filtrate files from HD.
Targets: Debian/Red Hat servers/Solaris/CentO
Aeris includes a tarball that contains a patched Postfix-2.10.0 suitable on Ubuntu 12 Server
The installation requires the root password and have the targeted computer.
It works fine with crypted HD, and re-crypt the files before exfiltration.
The working area is /var/www/{static implant ID}/update.pkg
wikileaks.org - wikileaks.org/vault7/document/Aeris-UsersGuide/Aeris-UsersGuide.pdf
sherif shothe MANY MORE THANKS
ReplyDelete