spot_img

Software pirates hijacked Apple technology to put a hacked version of apps on iPhones

Date:

Trending

Software pirates have hijacked technology designed by Apple Inc to distribute hacked versions of Spotify, Angry Birds, Pokemon Go, Minecraft and other popular apps on iPhones, Reuters has found.

- Advertisement -

Illicit software distributors such as TutuApp, Panda Helper, AppValley and TweakBox have found ways to use digital certificates to get access to a program Apple introduced to let corporations distribute business apps to their employees without going through Apple’s tightly controlled App Store.

Using so-called enterprise developer certificates, these pirate operations are providing modified versions of popular apps to consumers, enabling them to stream music without ads and to circumvent fees and rules in games, depriving Apple and legitimate app makers of revenue.

- Advertisement -

By doing so, the pirate app distributors are violating the rules of Apple’s developer programs, which only allow apps to be distributed to the general public through the App Store. Downloading modified versions violates the terms of service of almost all major apps.

TutuApp, Panda Helper, AppValley and TweakBox did not respond to multiple requests for comment.

- Advertisement -

Apple has no way of tracking the real-time distribution of these certificates, or the spread of improperly modified apps on its phones, but it can cancel the certificates if it finds misuse.

“Developers that abuse our enterprise certificates are in violation of the Apple Developer Enterprise Program Agreement and will have their certificates terminated, and if appropriate, they will be removed from our Developer Program completely,” an Apple spokesperson told Reuters. “We are continuously evaluating the cases of misuse and are prepared to take immediate action.”

After Reuters initially contacted Apple for comment last week, some of the pirates were banned from the system, but within days they were using different certificates and were operational again.

“There’s nothing stopping these companies from doing this again from another team, another developer account,” said Amine Hambaba, head of security at software firm Shape Security.

Apple confirmed a media report on Wednesday that it would require two-factor authentication – using a code sent to a phone as well as a password – to log into all developer accounts by the end of this month, which could help prevent certificate misuse.

Major app makers Spotify Technology SA, Rovio Entertainment Oyj and Niantic Inc have begun to fight back.

Spotify declined to comment on the matter of modified apps, but the streaming music provider did say earlier this month that its new terms of service would crack down on users who are “creating or distributing tools designed to block advertisements” on its service.

Rovio, the maker of Angry Birds mobile games, said it actively works with partners to address infringement “for the benefit of both our player community and Rovio as a business.”

Niantic, which makes Pokemon Go, said players who use pirated apps that enable cheating on its game are regularly banned for violating its terms of service. Microsoft Corp, which owns the creative building game Minecraft, declined to comment.

SIPHONING OFF REVENUE

It is unclear how much revenue the pirate distributors are siphoning away from Apple and legitimate app makers.

TutuApp offers a free version of Minecraft, which costs $6.99 in Apple’s App Store. AppValley offers a version of Spotify’s free streaming music service with the advertisements stripped away.

The distributors make money by charging $13 or more per year for subscriptions to what they calls “VIP” versions of their services, which they say are more stable than the free versions. It is impossible to know how many users buy such subscriptions, but the pirate distributors combined have more than 600,000 followers on Twitter.

Security researchers have long warned that misuse of enterprise developer certificates, which act as digital keys that tell an iPhone a piece of software downloaded from the internet can be trusted and opened. They are the centerpiece of Apple’s program for corporate apps and enable consumers to install apps onto iPhones without Apple’s knowledge.

Apple last month briefly banned Facebook Inc and Alphabet Inc from using enterprise certificates after they used them to distribute data-gathering apps to consumers.

The distributors of pirated apps seen by Reuters are using certificates obtained in the name of legitimate businesses, although it is unclear how. Several pirates have impersonated a subsidiary of China Mobile Ltd. China Mobile did not respond to requests for comment.

Tech news website TechCrunch earlier this week reported that certificate abuse also enabled the distribution of apps for pornography and gambling, both of which are banned from the App Store.

Since the App Store debuted in 2008, Apple has sought to portray the iPhone as safer than rival Android devices because Apple reviews and approves all apps distributed to the devices.

Early on, hackers “jailbroke” iPhones by modifying their software to evade Apple’s controls, but that process voided the iPhone’s warranty and scared off many casual users. The misuse of the enterprise certificates seen by Reuters does not rely on jailbreaking and can be used on unmodified iPhones.

THE SNAPSHOTS

Sign up to get quick snaps of everyday happening, directly in your inbox.

We don’t spam! Read our privacy policy for more info.

- Advertisement -
Krishna Mali
Krishna Mali
Founder & Group Editor of TechGraph.

More Latest Stories

More Articles

Beyond Instant Approvals: PayMe CEO Mahesh Shukla on Building Compliant Lending for India’s New Credit Economy

Speaking with TechGraph, Mahesh Shukla, Founder and CEO of PayMe, discussed how India’s digital lending landscape is evolving from instant disbursal models to frameworks...

Meta Declares Quarterly Cash Dividend Of $0.525 Per Share

Facebook parent company, Meta Platforms Inc. (NASDAQ:META) said its board of directors has declared a quarterly cash dividend of $0.525 per share on its outstanding Class A and Class B common stock, payable on December 23, 2025 to shareholders on record as of the...

Lok Sabha: Government releases ₹68K crore under MGNREGS; wage payments routed via DBT

New Delhi, India: Union Agriculture Minister Shivraj Singh Chouhan said the government has released...

The Evolving Classroom: Venkateshwar International School’s Pooja Sharma on Changing Role of Schools in Delhi’s CBSE Ecosystem

Speaking with TechGraph, Pooja Sharma, Vice Principal of Venkateshwar International School (VIS), discussed how...

Understanding What Makes Sunscreen Truly Effective

Many people pick a sunscreen merely based on its SPF, thus they think that...

Why NoSQL Databases Are the Future for Tech Startups

In today’s digital-first economy, tech startups continue to dominate the startup landscape. A startup...

The Future of Health Philanthropy: IGF India CEO Sundeep Talwar on Making Preventive Care Accessible for Underserved Communities

Speaking with TechGraph, Sundeep Talwar, CEO of IGF India, discussed the foundation’s decade-long journey...

The Rise of the AI Agent Economy: How Voice AI Agents Are Becoming the New Frontline Workforce For Call Centers

The work inside a call center has always depended on two things: speed and...

Digital Generics: How AI is Redefining the Future of Affordable Medicine

It was with pride that global headlines described India as the world's pharmacy, supplying close to 20% of global generic drug exports. Today, the...

The Road to Equality in Tech: Women In Cloud’s Chaitra Vedullapalli on Reshaping Opportunity for Women Entrepreneurs Globally

In an interview with TechGraph, Chaitra Vedullapalli, Co-Founder of Women In Cloud, discussed how...

How AI is Improving Risk Management Among Crypto Traders

Over the past few years, the role of Artificial Intelligence in almost every sector...

The Conversation Shift: Doceree CRO Thomas Shea on Making Healthcare Marketing More Relevant for Physicians

Speaking with TechGraph, Thomas Shea, Chief Revenue Officer (CRO) at Doceree, discussed how artificial...

Reimagining Creative Operations: ButtonShift’s Deepankar Das on Bringing Telemetry & Visual Intelligence to Modern Workflows

Speaking with TechGraph, Deepankar Das, Co-Founder and CEO of ButtonShift, discussed how traditional task...

The Rise of Cyber Cartels: How the Dark Web Fuels Digital Extortion?

In 2025, cybercrime has evolved beyond individual hackers or little ransomware criminal gangs into something greater, more organised, and just as dangerous: Cyber cartels....

AI Research Startup Redrob Draws $10 Mn In Series A Funding Led By Korea Investment Partners

AI research startup Redrob has secured $10 million in its Series A round led by Korea Investment Partners with KB Investment, Kiwoom Investment, Korea Development Bank Capital, Daekyo Investment and DS & Partners also participating, taking the company’s total funding to $14 million, including...

The Future Employability Equation: PrepInsta’s Manish Agarwal on How AI Is Reshaping Student Readiness for Hiring in India

Speaking with TechGraph, Manish Agarwal, Co-Founder of PrepInsta, discussed how the increasing adoption of...

Norovex Review: Inside the Trading Platform Gaining Momentum

The online trading industry has entered one of its most dynamic periods in years....

Beyond Price Points: Unix India’s Imran Kagalwala on Redefining Consumer Expectations in the Mobile Accessories Market

Speaking with TechGraph, Imran Kagalwala, Co-founder of Unix India, discussed how a crowded accessories...

Trump Says He Will Sue BBC Over Edited Broadcast of Jan 6 Speech

US President Donald Trump has said he plans to take legal action against the...

Starbucks Baristas Rally in New York as Strike Over Pay and Staffing Extends Nationwide

Starbucks baristas rallied in New York City as part of an open-ended strike that...

Demystifying Private Equity Market: WWIPL MD Krishna Patwari on Expanding Retail Access to India’s Unlisted Ecosystem

Speaking with TechGraph, Krishna Patwari, Founder and Managing Director of Wealth Wisdom India Pvt....

From Paper Bonds to Digital Yields: The Evolution of Fixed-Income Investing in the Fintech Era

When India dematerialized equities and bonds in 1996, it transformed investing from paper to...

Empowering Creators: Studiobackdrops’ Archisman Misra on Making Professional Production Accessible Across India

Speaking with TechGraph, Archisman Misra, CEO and Founder of Studiobackdrops, discussed how India’s fast-growing...

How Fleet Maintenance Scheduling Supports Business Vehicle Performance

Managing a fleet of vehicles can be challenging for any business. From delivery vans...

The Conversation Shift: Doceree CRO Thomas Shea on Making Healthcare Marketing More Relevant for Physicians

Speaking with TechGraph, Thomas Shea, Chief Revenue Officer (CRO) at Doceree, discussed how artificial...

Why Zero Code Exposure Is the Future of Trust in AI

AI coding assistants have quickly become indispensable for developers, promising faster deployment, cleaner code,...

Digit Life Insurance posts 31% rise in H1 FY26 revenue to ₹858 crore

India-based, Go Digit Life Insurance said its revenue for the first half of FY...

Tech Skilling for All: How AI Will Reshape Campus Recruitment in India

Skilling either tech or non-tech skills is no longer a competitive advantage for any...

AI as a Growth Multiplier: How Smart Companies Accelerate Without Breaking

In today’s business environment, smart growth is just as important as any other form...

Reimagining Creative Operations: ButtonShift’s Deepankar Das on Bringing Telemetry & Visual Intelligence to Modern Workflows

Speaking with TechGraph, Deepankar Das, Co-Founder and CEO of ButtonShift, discussed how traditional task...

Empowering Creators: Studiobackdrops’ Archisman Misra on Making Professional Production Accessible Across India

Speaking with TechGraph, Archisman Misra, CEO and Founder of Studiobackdrops, discussed how India’s fast-growing...

Trade Gaia Emerges as a Key Player in Global Altcoin Trading

While Bitcoin continues to dominate headlines, the real growth in 2025 is coming from...

How Fleet Maintenance Scheduling Supports Business Vehicle Performance

Managing a fleet of vehicles can be challenging for any business. From delivery vans...