New Android virus: Can root any phone and cannot be deleted

New Android virus: Can root any phone and cannot be deleted

[[155228]]

Beijing time, November 6th morning news, mobile security company Lookout Security discovered a new type of "Trojan adware", indicating that cyber criminals are exploring new ways to generate revenue.

Researchers have found the malware in thousands of Android apps, implanting it into popular apps like Facebook, Snapchat and Twitter to trick users. Worse still, the malware is nearly impossible to remove, forcing users to completely replace their devices.

Cybercriminals first obtain legitimate apps from the Google Play Store, then repackage them, insert adware into them, and upload them to third-party app stores. In many cases, these apps remain fully functional and do not alert the device owner.

The general pattern is as follows: a user installs an app from a third-party app store, which automatically roots the entire phone system, like poking a hole in the Android security system, opening up more attack channels for hackers. From then on, the app will regularly display ads, generating revenue for the attacker.

"Because these adware root the device and install themselves as system apps, they are almost impossible to remove, often forcing victims to completely replace their devices," Lookout Security said in a blog post. The good news is that users who install apps through Google Play, Google's official app store, are not affected by this.

The company also said that there are at least three similar Trojan adware, including Shuanet, Kemoge (ShiftyBug) and Shudun (GhostPush).

"The three adware strains collectively uploaded 20,000 repackaged apps, including Okta's two-step verification app," the researchers wrote.

The most troublesome thing is that these apps may obtain information they don't want to access, including sensitive corporate data.

Researchers said that the countries most affected by this software are the United States and Germany, and Russia, Brazil and Mexico have also been affected to a certain extent. The scope of impact is expected to expand further.

<<:  Virtual Reality Video

>>:  WeChat's fourth outage in 2015 is under emergency repair

Recommend

Are you over-cleaning? Don’t neglect the areas that really need cleaning!

Since childhood, our parents and teachers have ta...

How to achieve a daily increase of 10,000+ private domain users?

In 2020, a sudden new coronavirus outbreak swept ...

Top five disaster reduction emergency rumor-busting lists

This article was published by the official accoun...

RxJava Operator Series 3 (Part 2)

[[180593]] Continued from previous article Take T...

A good way to make money online. How can you make money online at home?

Recently, a friend said to me, "I have to ta...

After watching ofo’s new ad, I threw away the client’s brief!

Recently, ofo, the shared yellow bike company, re...

Help you optimize mobile page performance from four aspects

With the development of mobile Internet, we need ...

Why does Microsoft prefer mobile keyboard apps recently?

[[163288]] Recently, Microsoft quietly launched a...

Hacker doomsday? A brief analysis of Meizu Flyme 4 security

Nowadays, smartphones have long become people'...