‘XcodeGhost’ Malware Attack in 2015 Impacted 128 Million iOS Users, According to Trial Documents

Back in 2015, a malware-infected variation of Xcode started distributing in China, and malware-ridden “XcodeGhost” apps made their way into Apples App Store and past the App Store review team.
There were more than 50 known infected iOS apps at the time, including significant apps like WeChat, NetEase, and Didi Taxi, with up to 500 million iOS users possibly impacted. Its been a long period of time since the XcodeGhost attack, however Apples trial with Epic is surfacing new information.
Trial documents highlighted by Motherboard indicate that a total of 128 million users downloaded apps with the XcodeGhost malware, including 18 million users in the United States.
XcodeGhost was among the biggest attacks versus iPhone users to date due to the number of iPhone users that were affected. The 128 million impacted users got malware from downloads of more than 2,500 affected apps.
Based upon e-mails shared in the trial, Apple worked to identify the impact of the attack and how to finest inform those who downloaded contaminated apps. “Due to the a great deal of customers possibly affected, do we desire to send an e-mail to all of them?” Apples App Store vice president Matt Fischer asked.
Apple did eventually notify users that downloaded XcodeGhost apps, and also published a list of the leading 25 most popular apps that were compromised. Apple got rid of all of the infected apps from the App Store, and offered info to developers to assist them confirm Xcode moving forward.
XcodeGhost was a widespread attack, however it was dangerous or not effective. At the time, Apple said that it had no info to recommend that the malware was ever utilized for any destructive function nor that delicate personal information was taken, but it did gather app bundle identifiers, network details, and device names and types.