Audio By Carbonatix
About 30,000 Mac devices have been infected with a mysterious piece of malware.
The "unusual" Silver Sparrow strain silently affected systems in more than 150 countries around the world.
It was discovered by researchers at security company Red Canary, who have yet to determine its purpose.
Apple says it has taken steps to restrict the potential damage the malware, which targets devices with its new M1 chip, could cause.
Its actions effectively prevent any new devices from being infected.
BBC News has asked Apple to clarify how existing users can tell if they are affected.
Researchers said Silver Sparrow "did not exhibit the behaviours that we’ve come to expect from the usual adware that so often targets macOS systems".
It appears to call a command-and-control server every hour, from an infected machine, to check for "further instructions".
It also has a system in place to self-destruct and hide its existence entirely.
'Wake-up call'
"Though we haven’t observed Silver Sparrow delivering additional malicious payloads yet, its global reach, relatively high infection rate, and operational maturity suggest Silver Sparrow is a reasonably serious threat, uniquely positioned to deliver a potentially impactful payload at a moment’s notice,” the researchers said.
Lisa Forte, from Red Goat Cyber Security, told BBC News the attack should be a wake-up call to Mac users who assumed they were not at the same risk as Windows users of being infected by malware.
"The malware doesn’t appear to have done anything nasty," she said.
"But the fact it spread so fast and infected so many devices is alarming in itself.
"No device is immune from viruses."
Computer security expert Alan Woodward said the attack appeared to be an effort to disprove this long-standing myth.
"It is as if someone was trying a proof of concept of how to move harmful code on to Macs and to control it once there," he said.
"But they didn’t include the truly damaging elements."
Latest Stories
-
Forestry Commission, Terraformation deepen partnership to boost climate resilience and job creation
19 seconds -
Not all Big Push projects were awarded through sole sourcing – Alhassan Suhuyini
7 minutes -
Our request for Big Push contracts records was denied until we appealed – Sulemana Braimah
12 minutes -
Big Push sole-sourced contracts: NDC has ‘reset’ Ghana for the worse – Baffour Awuah
25 minutes -
Roads Minister’s response to our report was ‘hollow’ – Sulemana Braimah
51 minutes -
NDC committed to ending sole-sourcing abuse – Alhassan Suhuyini
59 minutes -
Big Push is government’s biggest intervention to fix Ghana’s roads – Alhassan Suhuyini
1 hour -
A firm awarded sole-sourced Big Push contract has 4 workers; another has just one – Sulemana Braimah
1 hour -
One firm awarded a Big Push sole-sourced contract was created in January 2025 – Sulemana Braimah
2 hours -
Procurement Specialist says Value for Money Office is unnecessary, warns it’ll create confusion
2 hours -
Inter Miami name stand after Argentina great Messi
2 hours -
Value for Money Office should be part of PPA – Baffour Awuah
2 hours -
Kofi Bentil blames leadership failures, not law, for procurement problems in Ghana
2 hours -
Academic City’s Tech Expo showcases innovative technologies to tackle galamsey
2 hours -
Gov’t actions contradict its own accountability pledges – Manhyia South MP
2 hours
