Xsser

Aliases: mRAT

First seen
2014-09-01 00:00:00
Malware type
rat, spyware
Family
Malware family
Profile updated
2026-07-07 15:41:10

Context

Xsser mRAT is a piece of malware that targets iOS devices that have software limitations removed. The app is installed via a rogue repository on Cydia, the most popular third-party application store for jailbroken iPhones. Once the malicious bundle has been installed and executed, it gains persistence - preventing the user from deleting it. The mRAT then makes server-side checks and proceeds to steal data from the user's device and executes remote commands as directed by its command-and-control (C2) server.

Reports & references

  • blogs.akamai.com — Ios And Android Os Targeted By Man In The Middle Attacks (report)
  • malware.wikia.com — Xsser Mrat (report)

External references