4 ms·
The official website was compromised and tainted .dmg files were uploaded to the site, using an Apple Developer signature to bypass the OS X gatekeeper feature
by foxandmouse 2y ago
The official website was compromised and tainted .dmg files were uploaded to the site, using an Apple Developer signature to bypass the OS X gatekeeper feature
The tainted packages installed a ransomware application (a variant of Linux.Encoder.1, but recompiled for Mac, known as KeRanger) that encrypts the user's files and attempts to force users to pay.. The developers were not complicit in the hack that affected their software; but I included it because the point I was trying to make was that hackers are aware and targeting apps popular among developers.