Google stops AdSense attack that forced banking trojan on Android phones

Enlarge

Google has shut down an operation that combined malicious AdSense advertisements with a zero-day attack exploiting Chrome for Android to force devices to download banking fraud malware.

Over a two-month span, the campaign downloaded the Banker.AndroidOS.Svpeng banking trojan on about 318,000 devices monitored by Kaspersky Lab, researchers from the Moscow-based anti-malware provider reported in a blog post published Monday. While the malicious installation files weren’t automatically executed, they carried names such as last-browser-update.apk and WhatsApp.apk that were designed to trick targets into manually installing them. Kaspersky privately reported the scam to Google, and engineers from the search company put an end to the campaign, although the timing of those two events wasn’t immediately clear.

“So far, those behind Svpeng have limited their attacks to smartphone users in Russia,” Kaspersky Lab researchers Nikita Buchka and Anton Kivva wrote in Monday’s post. “However, next time they push their ‘adverts’ on AdSense they may well choose to attack users in other countries; we have seen similar cases in the past. After all, what could be more convenient than exploiting the most popular advertising platform to download their malicious creations to hundreds of thousands of mobile devices?”

Read 4 remaining paragraphs | Comments

Technology Lab – Ars Technica

China’s new cybersecurity law sparks fresh censorship and espionage fears – The Guardian


The Guardian

China's new cybersecurity law sparks fresh censorship and espionage fears
The Guardian
China adopted a controversial cybersecurity law on Monday that it said would tackle growing threats such as hacking and terrorism but has triggered concern from foreign business and rights groups. The legislation, passed by China's largely rubber-stamp …
Chinese cyber-security laws raise espionage and censorship fearsSC Magazine UK
China approves law to tighten control on internet useCNBC
China approves measure to tighten internet use controlFox News
MIT Technology Review –Variety –Human Rights Watch –Wall Street Journal
all 196 news articles »

Espionage China – read more

Under the Din of the Presidential Race Lies a Once and Future Threat: Cyberwarfare – New York Times


New York Times

Under the Din of the Presidential Race Lies a Once and Future Threat: Cyberwarfare
New York Times
That is still a risk, of course — one that the Pentagon and its United States Cyber Command spend billions of dollars trying to deter. Yet America's main adversaries know those steps would constitute an act of war, most likely prompting an

and more »

cyber warfare – read more