Mac Malware Can Secretly Spy On Your Webcam and Mic - Get This Free Tool to Stay Safe

O

Omnipotent

Thread author
Apple Mac Computers are considered to be much safer than Windows at keeping viruses and malware out of its environment, but that’s simply not true anymore.

It's not because Mac OS X is getting worse every day, but because hackers are getting smart and sophisticated these days.

The bad news for Mac users is that malware targeting webcams and microphones has now come up for Mac laptops as well.

Patrick Wardle, an ex-NSA staffer who heads up research at security intelligence firm Synack, discovered a way for Mac malware to tap into your live feeds from Mac's built-in webcam and microphone to locally record you even without detection.

Wardle is the same researcher who has discovered a number of security weaknesses in Apple products, including ways to bypass the Gatekeeper protections in OS X.

Wardle also released a free tool called RansomWhere? earlier this year that has generic detection capabilities for Mac OS X ransomware variants.

Wardle is scheduled to present his new findings at the Virus Bulletin conference in Denver later today, along with his research demonstrating how malware could easily piggyback on your legitimate webcam sessions to keep its spying activity hidden.

Yes, piggybacking legitimate webcam sessions initiated by you.

Here's How Mac Malware Works:

Since Mac's firmware-level protection lights the green LED for any unauthorized access to user's webcam, Wardle believes that attackers can use a malicious app that quietly monitors the system for any outgoing feed of an existing webcam session – like a Skype or FaceTime call – where the light indicator would already be ON.

The malware then piggybacks the victim's webcam or microphone to secretly record both audio and video session, without any visible indication of this malicious activity and any fear of detection.

In his paper presentation, titled 'Getting Duped: Piggybacking on Webcam Streams for Surreptitious Recordings,' Wardle outlines the threat along with countermeasures to detect "secondary" processes that try to access an existing video session on OS X.

How to Prevent Your WebCam and Mic from Being Hacked

Wardle has developed and released a free tool, dubbed OverSight, which not only monitors webcam and microphone activities but also alerts you when a secondary process accesses your webcam, asking whether you want to allow or block access.

Oversight is a free download from Wardle’s website.

Moreover, physically covering your webcam – like what Facebook CEO Mark Zuckerberg and FBI Director James Comey do – also offers a low-tech approach to keeping snoopers away.
 

Entreri

Level 7
Verified
May 25, 2015
342
This is why I have tape over my Win10 PC/spy machine, and no mic...

The Mac is certainly more secure than a Windows PC, given things like Gatkeeper, still nowhere near as safe as their mobile OS.
 
H

hjlbx

Thread author
Mac systems are being targeted more... not like in the past when you were safe because malc0ders didn't bother to pursue Mac systems.
 

jamescv7

Level 85
Verified
Honorary Member
Mar 15, 2011
13,070
The problem here where security capabilities on Mac are such passive compare to Windows nowadays, so target of attacks are much deadlier.

Yes still safe for common scenario but not on future attacks.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top