Tag Archive for: Sneak

More Android apps from dangerous Ztorg family sneak into Google Play

Enlarge (credit: Kaspersky Lab)

For the second time this month, Google has removed Android apps from its Google Play marketplace. Google did so after a security researcher found the apps contained code that laid the groundwork for attackers to take administrative “root” control of infected devices.

“Magic Browser,” as one app was called, was uploaded to Google’s official Android App bazaar on May 15 and gained more than 50,000 downloads by the time it was removed, Kaspersky Lab Senior Research Analyst Roman Unuchek said in a blog post published Tuesday. Magic Browser was disguised as a knock-off to the Chrome browser. The other app, “Noise Detector,” purported to measure the decibel level of sounds, and it had been downloaded more than 10,000 times. Both apps belong to a family of Android malware known as Ztorg, which has managed to sneak past Google’s automated malware checks almost 100 times since last September.

Most Ztorg apps are notable for their ability to use well-known exploits to root infected phones. This status allows the apps to have finer-grain control and makes them harder to be removed. Ztorg apps are also concerning for their large number of downloads. A Ztorg app known as Privacy Lock, for instance, received one million installations before Google removed it last month, while an infected Pokémon Go guide racked up 500,000 downloads before its removal in September.

Read 3 remaining paragraphs | Comments

Technology Lab – Ars Technica

Here’s What We Know from Google’s Sneak Preview of Android O – CIO Today

Here's What We Know from Google's Sneak Preview of Android O
CIO Today
Earlier today, Google also released its third annual Android Security Year in Review report, noting that Android Nougat introduced many new security features designed to stop dangerous apps. "Using improved tools and the knowledge we gained in 2016, we …

and more »

android security – read more

Hackers use Opera to sneak spyware onto thousands of Windows machines – V3.co.uk

Hackers use Opera to sneak spyware onto thousands of Windows machines
V3.co.uk
The malware is one of many to use legitimate certificates to bypass traditional defence systems. Last year the tactic was used by the infamous Flame malware, which used a spoofed Microsoft update certificate to bypass its victims' defences. Topics

and more »

flame malware – read more