XLoader for iOS

MITRE ATT&CK: S0490 View on attack.mitre.org

Aliases: XLoader for iOS

First seen
2021-03-01 00:00:00
Malware type
spyware, trojan
Family
Malware family
Operating systems
ios
Profile updated
2026-07-07 15:28:00

Targeted industries: financial-services technology-and-telecommunications

Context

XLoader for iOS is a malicious iOS application that is capable of gathering system information. It is tracked separately from the XLoader for Android.

Malware & tools used

  • System Information Discovery (attack-pattern)
  • System Network Configuration Discovery (attack-pattern)
  • Code Signing Policy Modification (attack-pattern)
  • Exfiltration Over C2 Channel (attack-pattern)

Reports & references

  • MITRE ATT&CK — S0490 (report)
  • Trend Micro — New Version Of Xloader That Disguises As Android Apps And An Ios Profile Holds New Links To Fakespy (report)

External references