Trusted Design

iOS Trojan "Tiny"” Attacks Jailbroken Devices

概要

In October 2015, PaloAlto discovered a malicious payload file targeting Apple iOS devices. After investigating, we believe the payload belongs to a new iOS Trojan family that we’re calling “TinyV”. In December 2015, Chinese users reported they were infected by this malware. After further research, we found the malware has been repackaged into several pirated iOS apps that are available for download via multiple channels. In this blog, we will discuss how the TinyV Trojan spreads and how it works.

Created: 2026-02-23

Indicators

類似Pulses

このPulseに関連する脅威アクター (事実ベース)

APT41

Score: 8.19
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1190 - Exploit Public-Facing Application
  • T1008 - Fallback Channels
MITREへのリンク →

Scattered Spider

Score: 5.26
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

TA505

Score: 5.26
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1608.001 - Upload Malware
MITREへのリンク →

Volt Typhoon

Score: 4.76
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

APT3

Score: 5.26
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

FIN13

Score: 7.42
Matched TTPs:
  • T1069 - Permission Groups Discovery
  • T1190 - Exploit Public-Facing Application
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Gamaredon Group

Score: 10.13
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1027.015 - Compression
MITREへのリンク →

LuminousMoth

Score: 9.65
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Aoqin Dragon

Score: 3.03
Matched TTPs:
  • T1091 - Replication Through Removable Media
MITREへのリンク →

Darkhotel

Score: 3.03
Matched TTPs:
  • T1091 - Replication Through Removable Media
MITREへのリンク →

Mustang Panda

Score: 13.78
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

FIN7

Score: 12.58
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
MITREへのリンク →

APT28

Score: 15.84
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1190 - Exploit Public-Facing Application
  • T1498 - Network Denial of Service
  • T1564.001 - Hidden Files and Directories
  • T1550.001 - Application Access Token
MITREへのリンク →

Tropic Trooper

Score: 5.70
Matched TTPs:
  • T1091 - Replication Through Removable Media
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Sandworm Team

Score: 5.42
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

TA2541

Score: 5.12
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1027.015 - Compression
MITREへのリンク →

Earth Lusca

Score: 3.44
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
MITREへのリンク →

Kimsuky

Score: 5.42
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Mustard Tempest

Score: 6.51
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1608.006 - SEO Poisoning
MITREへのリンク →

OilRig

Score: 7.94
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1008 - Fallback Channels
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Threat Group-3390

Score: 6.59
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1027.015 - Compression
MITREへのリンク →

BlackByte

Score: 5.42
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

APT32

Score: 6.61
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Moonstone Sleet

Score: 4.50
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Contagious Interview

Score: 6.47
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1041 - Exfiltration Over C2 Channel
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

EXOTIC LILY

Score: 4.50
Matched TTPs:
  • T1608.001 - Upload Malware
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Rocke

Score: 4.14
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1564.001 - Hidden Files and Directories
MITREへのリンク →

Magic Hound

Score: 3.99
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Medusa Group

Score: 6.01
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1218.014 - MMC
MITREへのリンク →

Ke3chang

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Agrius

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

ToddyCat

Score: 3.99
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

GALLIUM

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Winter Vivern

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

APT29

Score: 3.99
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

Leviathan

Score: 6.59
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
  • T1027.015 - Compression
MITREへのリンク →

UNC3886

Score: 4.91
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1008 - Fallback Channels
MITREへのリンク →

HAFNIUM

Score: 8.27
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1564.001 - Hidden Files and Directories
  • T1550.001 - Application Access Token
MITREへのリンク →

MuddyWater

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

APT39

Score: 3.44
Matched TTPs:
  • T1190 - Exploit Public-Facing Application
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Higaisa

Score: 5.12
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1027.015 - Compression
MITREへのリンク →

Lazarus Group

Score: 14.73
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
  • T1008 - Fallback Channels
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

CURIUM

Score: 4.50
Matched TTPs:
  • T1041 - Exfiltration Over C2 Channel
  • T1566.003 - Spearphishing via Service
MITREへのリンク →

APT38

Score: 4.54
Matched TTPs:
  • T1036.006 - Space after Filename
MITREへのリンク →

PLATINUM

Score: 4.54
Matched TTPs:
  • T1056.004 - Credential API Hooking
MITREへのリンク →

Molerats

Score: 3.15
Matched TTPs:
  • T1027.015 - Compression
MITREへのリンク →

Mofang

Score: 3.15
Matched TTPs:
  • T1027.015 - Compression
MITREへのリンク →

このPulseに関連する脅威アクター (推論ベース)

APT28

Score: 0.81
Matched TTPs:
  • T1498 - Network Denial of Service
  • T1190 - Exploit Public-Facing Application
  • T1564.001 - Hidden Files and Directories
  • T1091 - Replication Through Removable Media
  • T1550.001 - Application Access Token
MITREへのリンク →

Lazarus Group

Score: 0.73
Matched TTPs:
  • T1566.003 - Spearphishing via Service
  • T1008 - Fallback Channels
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
  • T1041 - Exfiltration Over C2 Channel
MITREへのリンク →

Mustang Panda

Score: 0.72
Matched TTPs:
  • T1027.007 - Dynamic API Resolution
  • T1564.001 - Hidden Files and Directories
  • T1041 - Exfiltration Over C2 Channel
  • T1608.001 - Upload Malware
  • T1091 - Replication Through Removable Media
MITREへのリンク →

FIN7

Score: 0.70
Matched TTPs:
  • T1008 - Fallback Channels
  • T1190 - Exploit Public-Facing Application
  • T1564.001 - Hidden Files and Directories
  • T1608.001 - Upload Malware
  • T1091 - Replication Through Removable Media
MITREへのリンク →

Related CVEs

このPulseに見つかったCVEはありません。

Pulse – 脅威アクター グラフ


← Pulse一覧に戻る