Apple Lists Top 25 Apps Compromised by XcodeGhost Malware

Apple has updated its XcodeGhost FAQ on its Chinese website with a list of the top 25 most popular App Store apps that were compromised by the malware. The list includes some notable apps such as WeChat, Heroes of Order & Chaos and a localized version of Angry Birds 2.

25-XcodeGhost-Apps
Apple advises that users should update the affected apps to fix the issue, noting that if a listed app is available on the App Store right now, it has already been updated. Apps with an asterisk are currently not available on the App Store, but Apple says they should be updated very soon.

  • WeChat

  • DiDi Taxi

  • 58 Classified - Job, Used Cars, Rent

  • Gaode Map - Driving and Public Transportation

  • Railroad 12306

  • Flush

  • China Unicom Customer Service (Official Version)*

  • CarrotFantasy 2: Daily Battle*

  • Miraculous Warmth

  • Call Me MT 2 - Multi-server version

  • Angry Birds 2 - Yifeng Li’s Favorite*

  • Baidu Music - Music Player with Downloads, Ringtones, Music Videos, Radio & Karaoke

  • DuoDuo Ringtone

  • NetEase Music - An Essential for Radio and Song Download

  • Foreign Harbor - The Hottest Platform for Oversea Shopping*

  • Battle of Freedom (The MOBA mobile game)

  • One Piece - Embark (Officially Authorized)*

  • Let’s Cook - Receipes

  • Heroes of Order & Chaos - Multiplayer Online Game*

  • Dark Dawn - Under the Icing City (the first mobile game sponsored by Fan BingBing)*

  • I Like Being With You*

  • Himalaya FM (Audio Book Community)

  • CarrotFantasy*

  • Flush HD

  • Encounter - Local Chatting Tool

    Apple has been working to remove all apps compromised by XcodeGhost from the App Store, but some affected apps may remain available for download. Apple has also outlined steps for developers to validate Xcode and said it would alert users to let them know if they have downloaded apps that could have been compromised.

    XcodeGhost is a new iOS malware that arose from malicious versions of Xcode, Apple's official tool for developing iOS and OS X apps, downloaded by some developers in China. Chinese developers then unknowingly compiled iOS apps using the modified Xcode IDE and distributed those infected apps through the App Store.

    MacRumors posted a detailed XcodeGhost FAQ over the weekend that explains more about the malware, who is affected and how to keep yourself protected, although Apple has since downplayed the severity of XcodeGhost compared to what some security firms initially reported.

    We have no information to suggest that the malware has been used to do anything malicious or that this exploit would have delivered any personally identifiable information had it been used.

    We’re not aware of personally identifiable customer data being impacted and the code also did not have the ability to request customer credentials to gain iCloud and other service passwords.

    Chinese developers initially disclosed XcodeGhost on microblogging service Sina Weibo last Wednesday.

  • Popular Stories

    iPhone SE 4 Thumb 1

    iPhone SE 4 With Apple's Own 5G Modem 'Confirmed' to Launch in March

    Tuesday November 19, 2024 12:12 pm PST by
    Barclays analyst Tom O'Malley and his colleagues recently traveled to Asia to meet with various electronics manufacturers and suppliers. In a research note this week, outlining key takeaways from the trip, the analysts said they have "confirmed" that a fourth-generation iPhone SE with an Apple-designed 5G modem is slated to launch towards the end of the first quarter next year. In line with previo...
    airtag purple

    AirTag 2 Rumored to Launch Next Year With These New Features

    Sunday November 17, 2024 5:18 am PST by
    Apple released the AirTag in April 2021, so it is now three over and a half years old. While the AirTag has not received any hardware updates since then, a new version of the item tracking accessory is rumored to be in development. Below, we recap rumors about a second-generation AirTag. Timing Apple is aiming to release a new AirTag in mid-2025, according to Bloomberg's Mark Gurman....
    Magic Mouse Next to Keyboard

    No, Apple CEO Tim Cook Didn't Say He Prefers Logitech's MX Master 3 Over the Magic Mouse

    Sunday November 17, 2024 3:03 pm PST by
    While the Logitech MX Master 3 is a terrific mouse for the Mac, reports claiming that Apple CEO Tim Cook prefers that mouse over the Magic Mouse are false. The Wall Street Journal last month published an interview with Cook, in which he said he uses every Apple product every day. Soon after, The Verge's Wes Davis attempted to replicate using every Apple product in a single day. During that...
    Generic iOS 18 Feature Real Mock

    Apple Releases iOS 18.1.1 and iPadOS 18.1.1 With Security Fixes

    Tuesday November 19, 2024 10:10 am PST by
    Apple today released iOS 18.1.1 and iPadOS 18.1.1, minor updates to the iOS 18 and iPadOS 18 operating systems that debuted earlier in September. iOS 18.1.1 and iPadOS 18.1.1 come three weeks after the launch of iOS 18.1. The new software can be downloaded on eligible iPhones and iPads over-the-air by going to Settings > General > Software Update. Apple has also released iOS 17.7.2 for...
    at t turbo indicator iphone 16 pro max v0 8hrh7w5f3w1e1

    AT&T Turbo Indicator Showing Up in iPhone Status Bar for Subscribers

    Wednesday November 20, 2024 3:42 am PST by
    AT&T has begun displaying "Turbo" in the iPhone carrier label for customers subscribed to its premium network prioritization service, according to reports on Reddit. The new indicator seems to have started appearing after users updated to iOS 18.1.1, but that could be just coincidence. Image credit: Reddit user No_Highlight7476 The Turbo feature provides enhanced network performance through ...
    iPhone 17 Slim Feature Single Camera 1 Redux

    'iPhone 17 Air' Rumored to Surpass iPhone 6 as Thinnest iPhone Ever

    Monday November 18, 2024 1:07 pm PST by
    In a research note with Hong Kong-based investment bank Haitong today, obtained by MacRumors, Apple analyst Jeff Pu said he agrees with a recent rumor claiming that the so-called "iPhone 17 Air" will be around 6mm thick. "We agreed with the recent chatter of an 6mm thickness ultra-slim design of the iPhone 17 Slim model," he wrote. If that measurement proves to be accurate, there would be ...
    bug security vulnerability issue fix larry

    Make Sure to Update: iOS 18.1.1 and macOS Sequoia 15.1.1 Fix Actively Exploited Vulnerabilities

    Tuesday November 19, 2024 10:52 am PST by
    The iOS 18.1.1, iPadOS 18.1.1, and macOS Sequoia 15.1.1 updates that Apple released today address JavaScriptCore and WebKit vulnerabilities that Apple says have been actively exploited on some devices. With the JavaScriptCore vulnerability, processing maliciously crafted web content could lead to arbitrary code execution. The WebKit vulnerability had the same issue with maliciously crafted...

    Top Rated Comments

    garylapointe Avatar
    120 months ago
    What's the point of a top 25 list?

    Don't we need to know all of them?!?

    Gary
    Score: 19 Votes (Like | Disagree)
    shanson27 Avatar
    120 months ago
    Never trust apps from China
    Score: 15 Votes (Like | Disagree)
    Madmic23 Avatar
    120 months ago
    How did that Angry Birds app even make it into the store? There's no way it's from Rovio.
    Score: 13 Votes (Like | Disagree)
    Dilster3k Avatar
    120 months ago
    Love how Apple always brags about Appstore statistics... In reality it's just filled with crap like this.
    Score: 12 Votes (Like | Disagree)
    MH01 Avatar
    120 months ago
    If you have never even considered downloading one of the top 25, you haven't installed any of the rest.
    That's an awful assumption....
    Score: 12 Votes (Like | Disagree)
    MH01 Avatar
    120 months ago
    What's the point of a top 25 list?

    Don't we need to know all of them?!?

    Gary
    Sounds like the list might be in the hundreds . Top 25 is a PR move I suspect.

    Agree need the complete list.
    Score: 6 Votes (Like | Disagree)