Connect with us

Tech

42 malicious apps affected 8 million Android users

Published

on

Security researchers have detected a massive year-long adware campaign where the involved apps were installed on users’ Android devices eight million times from Google Play alone.

Slovak internet security company ESET identified 42 apps on Google Play as belonging to the campaign, which had been running since July 2018. Of those, 21 were still available at the time of discovery.

“We reported the apps to the Google security team and they were swiftly removed. However, the apps are still available in third-party app stores,” said the researchers in a statement on Thursday.

Once launched, the “Ashas” adware family app sent “home” key data about the affected device: device type, OS version, language, number of installed apps, free storage space, battery status, whether the device is rooted and Developer mode enabled, and whether Facebook and FB Messenger are installed.

“The app receives configuration data from the command and control server (C&C) server, needed for displaying ads, and for stealth and resilience,” said security researcher Lukas Stefanko.

Once a user installed an adware-infected app, the app will show full-screen ads on the device’s display at intervals.

First, the malicious app tries to determine whether it is being tested by the Google Play security mechanism.

After dodging Google servers, the malicious app can set a custom delay between displaying ads. Based on the server response, the app can also hide its icon and create a shortcut instead.

“If a typical user tries to get rid of the malicious app, chances are that only the shortcut ends up getting removed. The app then continues to run in the background without the user’s knowledge. This stealth technique has been gaining popularity among adware-related threats distributed via Google Play,” the researchers noted.

According to the team, students at a Vietnamese university may be behind the malicious adware app.

“Due to poor privacy practices on the part of our culprit’s university, we now know his date of birth, we know that he was a student and what university he attended. We retrieved his University ID; a quick googling showed some of his exam grades,” said researchers.

“The malicious developer also has apps in Apple’s App Store. Some of them are iOS versions of the ones removed from Google Play, but none contain adware functionality,” said Stefanko.

source

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Tech

Google Expands Dark Web Monitoring for Gmail Users: Protecting Your Online Security

Published

on

Representational Image | Source: Shutterstock

Google has made an announcement stating its plans to extend Dark Web monitoring to all Gmail users in the United States, with a later expansion to international markets. This new feature will allow Gmail users to conduct scans to check if their Gmail address appears on the Dark Web, and they will receive guidance on how to take necessary actions to protect themselves.

Previously, the Dark Web scan feature was exclusively available to Google One subscribers in the US. However, within the next few weeks, it will become accessible to all Gmail users. Google also mentioned its intention to expand access to the Dark Web report to selected international markets.

Jen Fitzpatrick, SVP of Google Core services, highlighted that the company already safeguards Gmail users from approximately 15 billion unwanted messages on a daily basis. They achieve this by blocking over 99.9 percent of spam, phishing attempts, and malware. Furthermore, Google intends to enhance spam protection within Google Drive. They will introduce a new view that simplifies the sorting and reviewing of files, allowing users to identify potential spam and protect themselves from unwanted or harmful content.

To further enhance user safety, Google Drive will automatically classify content into a spam view, similar to the functionality in Gmail. This will prevent users from encountering dangerous or undesirable files. Additionally, Google is launching a new tool called “About this Image” to assist individuals in evaluating the credibility of visual content discovered online. This tool will provide users with important contextual information about images, such as the date of first indexing by Google, where it was initially found, and where else it has appeared online, including news, social, or fact-checking sites.

Google has recently become the first major technology company to enable passkey sign-in on its platform. Passkeys combine the high level of security offered by 2-Step Verification (2SV) with the convenience of simply unlocking the device.

Continue Reading

Mobiles & Tabs

Google Authenticator Introduces Google Account Synchronization for Easier 2FA Code Backup

Published

on

Google Authenticator is a valuable Google service that is underutilized by many people. With the increasing adoption of two-factor authentication (2FA), it is becoming apparent that relying on text messages as a second form of verification is not secure enough. Therefore, using a service like Google Authenticator is an easy alternative to switch to.

Although using Google Authenticator is generally easy, it can become complicated if the device storing your 2FA codes is lost or stolen. However, Google has announced a change to Google Authenticator that should help users deal with this situation. The service now supports Google Account synchronization on both iOS and Android, allowing users to back up their one-time codes to their Google Account. This is a significant improvement.

Google has received feedback over the years regarding the complexity of dealing with a lost or stolen device when using Google Authenticator. The account synchronization feature should make this less of an issue, as your codes can now be stored in your Google Account. The new version of Authenticator with account synchronization should be rolling out as version 6.0. Users simply need to update the app to the newest version and follow some prompts to get started.

The update process is straightforward, with the first prompt asking users to choose their Google Account to sync to. From there, users can start adding codes, switch between light and dark mode, transfer accounts, change accounts, and more. Additionally, the app icon has been updated from the old grey “G” logo to a more colorful image.

Continue Reading

News

Govt blocks several social media handles circulating fake, inciting content

Published

on

In the midst of the enormous lockdown on contemptuous posts, sources said that the hostile substance actioned related to the counterfeit video of a cupboard instructions, an enlivened phony video showing viciousness against the Prime Minister, and disparaging posts focusing on Hindu ladies transferred via web-based media handles.

The public authority has hindered a few web-based media handles that were coursing “counterfeit and affecting” content on Twitter, YouTube, and Facebook, Minister of State for IT Minister Rajeev Chandrasekhar said on Saturday.

Proprietors of these records are being recognized for activity under the law, he added.

“Taskforce on Safe and Trusted Internet at @GoI_MeitY at work. Handles that attempted to push counterfeit/inducing content on twitter, youtube, fb, insta have been impeded,” Chandrasekhar Tweeted on Saturday.

The pastor said proprietors of such records are being distinguished for activity under the law, and declared that stages will be investigated on their due steadiness.

On Friday evening, the pastor had reacted to a tweet that encouraged him to make a move against the “makers of an exceptionally fierce video that includes the PM”, which “has been in the public area since December 2020”.

Continue Reading

Newsletters

Enter your email address to get latest updates

Advertisement

Trending

Copyright © 2018 - 2022 Delhi Wire.