You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
masque attack
About this tag
The Masque Attack is a technique affecting Apple iOS devices running versions 7.1.1 through 8.1.1 beta, discovered by FireEye researchers. It allows an attacker to replace a legitimate iOS app with malware by tricking users into installing an app from an untrusted source, such as through a phishing link, rather than the official App Store or an enterprise provisioning system. This tag covers discussions and alerts about the vulnerability, its impact on iOS security, and mitigation steps for users and organizations to avoid installing untrusted apps.
Original release date: November 13, 2014
Systems Affected
iOS devices running iOS 7.1.1, 7.1.2, 8.0, 8.1, and 8.1.1 beta.
Overview
A technique labeled “Masque Attack” allows an attacker to substitute malware for a legitimate iOS app under a limited set of circumstances.
Description...