Skip to main content

Apple allowed spyware posing as anti-malware tool into its Mac App Store

Apple MacBook Pro OLED with Touch Bar
Malarie Gokey/Digital Trends

One of the top paid utilities in the Mac App Store that claims to protect your Apple computer against malware is actually spyware in disguise that does just the opposite. The app, Adware Doctor, retails for $5 on Apple’s online storefront, and security researchers discovered that the malicious app actually collects your browsing history across the Safari, Chrome, and Firefox browsers and sends that data to a China-based server.

Originally, the app was posed as Adware Medic, sharing a similar name to the AdwareMedic app that was acquired by Malwarebytes, forcing Apple to remove the copycat. However, after it changed its name to Adware Doctor, Apple allowed the app back into the Mac App Store, and the app has garnered a number of likely fake five-star reviews. Security researcher Patrick Wardle with Privacy 1st claimed that he notified Apple about the app’s malicious behavior, according to a report on 9to5 Mac. Apple removed the app after numerous tech publications reported on the app’s behavior on Friday, September 7.

Recommended Videos

In addition to sending your browsing history to China, Adware Doctor also has access to your iTunes search history as well as other apps that are installed on the Mac. Because it poses as an app designed to scan your Mac for malware and spyware, Adware Doctor was able to overcome the sandbox protections on the Mac. Wardle discovered that the app requested universal access on first run, which gave it access to information found from within other apps, like browsing history data on Safari. Apple claims that the release of MacOS Mojave this fall will bring new privacy protections designed to prevent apps like Adware Doctor from accessing Safari browsing history.

However, Wardle noted that the app does actually clear your browser of adware, and the app’s data collection stopped a few days ago, PCMag reported. 9to5 Mac reported that the server in China is now offline, but there’s still a chance it could resume operation.

Adware Doctor’s entry in Apple’s official Mac App Store should be cause for concern for consumers. Even if the app is highly rated — Adware Doctor came with more than 6,000 positive reviews — users should always research an app and the developer before installing anything from the internet, regardless of where it comes from. This incident follows an earlier report this week of a rogue Chrome browser extension. A fake extension was uploaded to Google’s Chrome webstore after the original developer was hacked, allowing the hackers to gain access to its users’ logins to other sites and services.

According to Malwarebytes‘ director of Mac and mobile Thomas Reed, the firm has worked with Apple numerous times in the past to remove fake apps, but these apps will reappear as a new version with a new name before long. “It’s blindingly obvious at this point that the Mac App Store is not the safe haven of reputable software that Apple wants it to be,” he said.

Chuong Nguyen
Silicon Valley-based technology reporter and Giants baseball fan who splits his time between Northern California and Southern…
Apple October Mac launch: everything we expect to be announced next week
Apple's Craig Federighi introduces window tiling in macOS Sequoia at the Worldwide Developers Conference (WWDC) in 2024.

It's official. After an entire month of waiting, Apple has revealed that some Mac-related announcements are coming just next week. The exact timing of the announcements, along with what devices will be launched, however, are still yet to be confirmed.

That being said, the leaks and reporting on this launch have been fairly robust, so we have a fairly good idea of what could be in the works. Refreshing Macs with the M4 chip will be the focus of the event, but there may be a few more surprises too.
When will Apple launch its new devices?
https://twitter.com/gregjoz/status/1849484363165213148?ref_src=twsrc%5Etfw%7Ctwcamp%5Etweetembed%7Ctwterm%5E1849484363165213148%7Ctwgr%5E6e69ea2b057a7d389444839b9bc3c6940ddc52e7%7Ctwcon%5Es1_&ref_url=https%3A%2F%2Fwww.digitaltrends.com%2Fcomputing%2Fapple-announcements-are-coming-on-monday%2F

Read more
One of the hottest AI apps just came to the Mac (and it’s not ChatGPT)
the Perplexity desktop app

Perplexity announced Thursday the release of a new native app for Mac that will put its "answer engine" directly on the desktop, with no need for a web browser.

Currently available through the Apple App Store, the Perplexity desktop app promises a variety of features "exclusively for Mac." These include Pro Search, which is a "guided AI search for deeper exploration," the capability for both text and voice prompting, and "cited sources" for every answer.

Read more
Is Apple’s upcoming M4 Mac event still happening? I’m skeptical
Russian YouTuber Romancev768 with what is claimed to be a real M4 MacBook Pro unit.

Over the last few weeks, the endless stream of M4 MacBook Pro leaks has been almost inescapable. We’ve seen photos, unboxing videos, even M4 laptops reportedly going up for sale way ahead of time. Ye.t despite all that, there’s been one thing that has stopped me from fully believing that these leaks are legitimate -- despite a well-known reporter claiming that they’re authentic.

That’s because in all the leaks we’ve seen, the box of the M4 MacBook Pro has come with the same black-and-gray wallpaper that Apple used for its M3 line of MacBook Pros. It’s something that has bugged me ever since I first noticed it. But what if the use of an old wallpaper isn't proof that these leaks are fakes, but is actually a clue about what Apple is about to do next?
The wallpaper of it all

Read more