Tag Archive for: Flags

NCC-CSIRT flags ‘HiddenAds’ malware – The Sun Nigeria


By Chinenye Anuforo, [email protected]

The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has flagged a new malware, HiddenAds, which has infiltrated Google Play Store and can impact device performance and jeopardize users’ privacy.

In its advisory of August 8, 2022, NCC-CSIRT classified the virus, first identified by the McAfee Mobile Research Team, as high in probability and damage potential.

The malware infiltrated the Google Play Store in the form of several device cleaners or optimization apps.

According to the summary provided by NCC-CSIRT “Upon installation, it can run malicious services without the user opening the app. It also spams the user with irrelevant advertisements. The apps have received downloads ranging from 100,000 to over a million.

“Some of the apps HiddenAds masquerades as are: Junk Cleaner, EasyCleaner, Power Doctor, Carpet Clean, Super Clean, Meteor Clean, Strong Clean, Windy Clean, Fingertip Cleaner, Keep Clean, Full Clean – Clean Cache, Quick Cleaner, and Cool Clean.

“When a user installs any of the aforementioned apps, whether the user has opened the app or not, a malicious service is immediately installed on the device. The app will then attempt to blend into the app tray by changing its icon to the Google Play icon that every Android user is familiar with. Its name will also change to ‘Google Play’ or ‘Setting’. The device will then be bombarded with ads in a variety of deceptive ways, severely impairing the user experience,” the advisory stated.

Anyone that installs the compromised app will experience their device performance suffering significantly, clicking on the ads may result in stealth downloads/installation of other malware, users may inadvertently subscribe to services and be billed on a monthly basis, and the privacy of users will be jeopardized.

NCC-CSIRT advised users to avoid downloading questionable apps or apps they are unsure about while those who have installed any of the identified malicious apps should immediately delete them.

It further disclosed that where the malicious app’s icon and name have changed, it can be identified by the fact that it is removable while the…

Source…

NCC-CSIRT Flags ‘HiddenAds’ Malware that Jeopardizes Users’ Privacy – TechEconomy.ng


The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has flagged a new malware, HiddenAds, which has infiltrated Google Play Store that can impact device performance and jeopardize users’ privacy.

In its advisory of August 8, 2022, NCC-CSIRT classified the virus, first identified by the McAfee Mobile Research Team, as high in probability and damage potential.

The malware infiltrated the Google Play Store in the form of several device cleaners or optimization apps.

According to the summary provided by NCC-CSIRT “Upon installation, it can run malicious services without the user opening the app. It also spams the user with irrelevant advertisements. The apps have received downloads ranging from 100,000 to over a million.

“Some of the apps HiddenAds masquerades as are: Junk Cleaner, EasyCleaner, Power Doctor, Carpet Clean, Super Clean, Meteor Clean, Strong Clean, Windy Clean, Fingertip Cleaner, Keep Clean, Full Clean – Clean Cache, Quick Cleaner, and Cool Clean.

“When a user installs any of the aforementioned apps, whether the user has opened the app or not, a malicious service is immediately installed on the device. The app will then attempt to blend into the app tray by changing its icon to the Google Play icon that every Android user is familiar with. Its name will also change to ‘Google Play’ or ‘Setting’. The device will then be bombarded with ads in a variety of deceptive ways, severely impairing the user experience,” the advisory stated.

Anyone that installs the compromised app will experience their device performance suffering significantly, clicking on the ads may result in stealth downloads/installation of other malware, users may inadvertently subscribe to services and be billed on a monthly basis, and the privacy of users will be jeopardized.

NCC-CSIRT advised users to avoid downloading questionable apps or apps they are unsure about while those who have installed any of the identified malicious apps should immediately delete them.

It further disclosed that where the malicious app’s icon and name have changed, it can be identified by the fact that it is removable while…

Source…

Metro Watchdog Safety Report Flags Fatigued Train Operators – NBC4 Washington


Metro’s train and bus operators could be coming to the job tired and physically unfit to perform their duties, according to a report issued Tuesday by the transit agency’s top safety watchdog. 

The Washington Metrorail Safety Commission flagged potential safety risks related to fatigued operators. Some of this could be because workers aren’t getting enough time off between shifts. 

In 2004, a Metro train at the Woodley Park station on the Red Line rolled backward thousands of feet. It crashed into another train, injuring 20 people. Video footage shows twisted, mangled wreckage. 

“It felt like an explosion. Everyone started running and screaming,” one man said. 

The train operator was found to have been tired and not alert, likely because of a lack of sleep. 

Almost 17 years later, the report issued Tuesday says Metro still isn’t doing enough to ensure that employees are rested and physically fit for the job.

“There are opportunities to improve the program to ensure that [operators] are as well rested as they can be. Again, this is a systemic audit – and we look at the systems, trying to give Metro every opportunity to prevent a safety event like a crash before it happens,” safety commission spokesman Max Smith said.

In addition to the 2004 crash, the safety commission pointed to lesser-known examples of train operator fatigue, including when workers have fallen asleep at the switch. 

Metro is reviewing the report and will respond with changes, a representative said. 

The transit agency has 30 days to address the issues.

Source…

Red flags – which platforms/services do internet users have most privacy concerns about?


Kaspersky analyzed anonymized data, voluntarily provided by Privacy Checker, a website that contains helpful advice on privacy settings for various internet services and platforms. The results reflect which services and platforms’ internet users have the most privacy concerns about. The data show, most customers are worried about the security of popular mobile operating systems (21.2%) and Google’s privacy level (18.3%). 

Internet users leave digital footprints when they use various online services. This footprint may include visited websites, uploaded photos, and interactions on social media (such as comments, posts and reactions). The correct privacy settings in digital services can help reduce the number of traces online, and help you take control of your information. Our research explored which services and platforms users are most concerned about regarding privacy and security of personal data. 

The data was obtained based on anonymous data on visits to the Kaspersky Privacy Checker website between December 2019 and August 2021. Kaspersky analyzed for which services and platforms users most opened the security setting instructions. 

Among the most popular requests for privacy were Google settings on Android (11.1%), security rules for Android OS (7.3%), and WhatsApp settings on Android (5.9%). 

When it comes to social networks, users most frequently viewed the Facebook security pages on various platforms (15.7%). Instagram was the second most reviewed social network in terms of the number of requests for settings privacy – its total share of appeals was 9.9%. TikTok took third place with an 8.1% share of requests for security settings. Considering its monthly active audience is four times smaller than Facebook’s (689 million versus 2.9 billion), the numbers show that the privacy offered by TikTok is also of great concern to users.

Among messenger services, users are most concerned with the WhatsApp security level – the share of requests about its security policy was 13.9%.

Meanwhile, the Russian social network VK also made it into the top global queries, at 7.7%. VK is Russia’s most popular social network, and the share of security instructions…

Source…