FBI solves mystery surrounding 15-year-old Fruitfly Mac malware
zdnet.com
zdnet.com
ZDNet has some more background on the case here: https://www.zdnet.com/article/fbi-solves-mystery-surrounding...
The government typically makes grandiose statements that sound impressive and make the accused sound like the devil himself but reality is almost always an order of magnitude more mild.
Unless I hear otherwise I'm gonna assume it was just pinging back to some C&C infrastructure he owned or something like that.
[0] https://www.scribd.com/document/389668977/Durachinsky-Indict...
This makes him sound like a pedophile, but given that he created it at 14, he could watch "children" older than himself.
Without details all we can do is speculate.
I'd be interested to learn if this isn't the case.
> The attack vector included the scanning and identification of externally facing services, to include the Apple Filing Protocol (AFP, port 548), RDP or other VNC, SSH (port 22), and Back to My Mac (BTMM), which would be targeted with weak passwords or passwords derived from third party data breaches.
> But this mystery was solved earlier today by Wardle
This is an interesting notion, that people's home computers can be hacked by using their passwords from online data breaches.
And the best way to find common passwords is by using frequency analysis from prior breaches.
It's definitely clever, but it's also not super innovative - kind of a standard tool in the toolbox.
Just what did Wardle solve here? The FBI solved it.
> The university identified more than 100 computers with active internet connections that were infected by malware. Agents learned the computers had been compromised for a few years, the affidavit says.
> The university also found an IP address, a number that identifies its location on the internet, associated with the malware was also used to access Durachinsky's alumni email account, Brian wrote.
For one, there was an arrest. It's not like the news is about the mere existence of such a virus.
this was just nobody looked because it wasn't that popular to look
Nobody as in a solid 8-10% of the US market?
http://gs.statcounter.com/os-market-share/all/united-states-...
> this was just nobody looked because it wasn't that popular to look
do you have a rebuttal to that?
Point being what? You said "nobody" (of course implying very small number) and it's 10%, which is tens of millions of people. Not only that, but it's the most lucrative 10% of the US computer-buying population. So, the "nobody" point is already taken down.
>> this was just nobody looked because it wasn't that popular to look > do you have a rebuttal to that?
That's an even worse argument. Not only the user base is large enough, but Apple news (including Mac news) receive close, or often even more publicity than Windows developments (especially any negative news). Besides there are lots of decade+ spanning cases like that on Windows side too, which, you'd have to agree, is not an unpopular platform.
The reason it went undetected all these years is already revealed in TFA: "it infected a very small number of victims".
just breathe
But I recall seeing something recent that Apple was trying to make it hardware linked now.