Sunday, December 4, 2016

Leaky Android, fragmentation and smart virus – Tabletowo.pl

Over a million Android devices were infected, which receives the token and passwords for the most popular Google services. It uses the vulnerabilities of the old system Google. This news was shared by the American company Check Point Software, which has also created a tool to check if your account relates to a unfortunate million. The malware has to attack the day 13 000 devices running the green robot.

gooligan1

the Virus is called Gooligan infects the device with the system from Jelly Bean to KitKat using Lollipopie ending. If Android updates looked different, then perhaps no one would have taken, especially in Marshmallow and Nougat security hole has already been fixed, but unfortunately, the fragmentation of the system Google is on a level that is threatened almost 75% of devices are currently in operation. Gooligan was a very good argument for complaints about the slowness of upgrading the system manufacturers. Also a slap in the face to Mountain View, which still don’t seem to worry that the last 5 versions of their mobile systems 3 old account for nearly ¾ full and the last part is the middle śladowy.

Despite the false information on some sites, the virus puts the end user for additional costs associated with its activities. What’s even more interesting that according to some sources, he also does not send data to the attacker. In that case to do? Something much wiser. Virus pulls the user a specific, chosen by the creators of the malicious application, which then generates the highest possible rating in Google Play. I don’t need to say what the impact has a million votes for the final application.

it’s No secret that malware nowadays needs to itself to earn. Hackers who hack the system because they could, gone. If we attack, which does not make much sense, it only means that we don’t see more deeply, which often is not obvious. This time I am impressed by the ingenuity of the attacker.

Developers offering free apps on Google Play, earn on two things: in-app purchases and all ads. The program installs Adware that allows you to earn on viewing advertising. Therefore, the malware creators earn money indirectly. Don’t have to play the hacking credit cards routing hooks good for another user account. The money they received (theoretically legitimate) advertisers for their “work”. If only the person who invented it przekierowała your creativity to something legal.

gooligan2

In the end, a few words of comfort: Gooligan is most commonly transmitted via the apps installed from sources other than Google Play. Most infected devices are discovered in Asia where apps not available in Google Play is very popular. In Europe there are only 9% of those million zhakowancyh accounts.

source: checkpoint, Wired

graphics: Roonby

LikeTweet

No comments:

Post a Comment