{"id":159314,"date":"2019-09-10T10:55:33","date_gmt":"2019-09-10T07:55:33","guid":{"rendered":"http:\/\/ww-vb.mine.nu\/w108\/google-purges-24-malware-ridden-apps-that-were-downloaded-500000-times\/"},"modified":"2019-09-10T10:55:33","modified_gmt":"2019-09-10T07:55:33","slug":"google-purges-24-malware-ridden-apps-that-were-downloaded-500000-times","status":"publish","type":"post","link":"https:\/\/hameed.nwar.uk\/sa\/google-purges-24-malware-ridden-apps-that-were-downloaded-500000-times\/","title":{"rendered":"Google purges 24 malware-ridden apps that were downloaded 500,000 times"},"content":{"rendered":"<p> [ad_1]<br \/>\n<br \/><img decoding=\"async\" src=\"https:\/\/cdn0.tnwcdn.com\/wp-content\/blogs.dir\/1\/files\/2019\/07\/google-android-malware-hed-796x418.jpg\" \/><\/p>\n<div>\n<p>Android just can\u2019t seem to shake off its malware issues.\u00a0A new malware campaign targeting Android has been found to engage in ad fraud at least since early June 2019.<\/p>\n<p>The findings, disclosed by cybersecurity firm CSIS Security Group, reveal that the malware \u2014 called Joker \u2014 is designed to surreptitiously sign users up for premium service subscriptions, in addition to stealing the victim\u2019s SMS messages, the contact list, and device information.<\/p>\n<p>In total, CSIS found 24 Android apps on Google Play (listed below) containing the trojan, racking up more than 472,000 downloads by unsuspecting Android users before\u00a0Google eventually purged the infected software from its platform.<\/p>\n<p>Joker\u2019s operators have specifically gone after victims in 37 countries, including Australia, China, Germany, India, Singapore, Switzerland, the UAE, the UK, and the US.<\/p>\n<p>According to CSIS, the malware not only obfuscates the modus operandi of delivering the actual malicious payload from the command-and-control (C&amp;C)\u00a0server owned by the attacker. It\u2019s been programmed to generate \u201cas little footprint as possible\u201d by hiding within advertisement frameworks used in the apps.<\/p>\n<p>In addition to periodically requesting new commands from the C&amp;C server, the trojan goes a step further by silently clicking on ads, and hijacks SMS messages that contain the authorization code to verify subscription payments.<\/p>\n<p>The apps in question are\u00a0as follows:<\/p>\n<ul>\n<li>Advocate Wallpaper<\/li>\n<li>Age Face<\/li>\n<li>Altar Message<\/li>\n<li>Antivirus Security \u2013 Security Scan<\/li>\n<li>Beach Camera<\/li>\n<li>Board picture editing<\/li>\n<li>Certain Wallpaper<\/li>\n<li>Climate SMS<\/li>\n<li>Collate Face Scanner<\/li>\n<li>Cute Camera<\/li>\n<li>Dazzle Wallpaper<\/li>\n<li>Declare Message<\/li>\n<li>Display Camera<\/li>\n<li>Great VPN<\/li>\n<li>Humour Camera<\/li>\n<li>Ignite Clean<\/li>\n<li>Leaf Face Scanner<\/li>\n<li>Mini Camera<\/li>\n<li>Print Plant scan<\/li>\n<li>Rapid Face Scanner<\/li>\n<li>Reward Clean<\/li>\n<li>Ruddy SMS<\/li>\n<li>Soby Camera<\/li>\n<li>Spark Wallpaper<\/li>\n<\/ul>\n<p>If you have installed any of the apps mentioned above, it\u2019s worth checking your transaction history to see if there are any suspicious payments that you don\u2019t recognize. Also, make sure to closely\u00a0scrutnize your permissions for every app installed on your Android device.<\/p>\n<\/p><\/div>\n<p>[ad_2]<br \/>\n<br \/><a href=\"https:\/\/thenextweb.com\/security\/2019\/09\/10\/google-purges-24-malware-ridden-apps-that-were-downloaded-500000-times\/\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[ad_1] Android just can\u2019t seem to shake off its malware issues.\u00a0A new malware campaign targeting Android has been found to engage in ad fraud at least since early June 2019. The findings, disclosed by cybersecurity firm CSIS Security Group, reveal that the malware \u2014 called Joker \u2014 is designed to surreptitiously sign users up for &hellip;<\/p>\n","protected":false},"author":1,"featured_media":159316,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[2],"tags":[],"class_list":["post-159314","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tie-world"],"_links":{"self":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/posts\/159314","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/comments?post=159314"}],"version-history":[{"count":0,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/posts\/159314\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/media\/159316"}],"wp:attachment":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/media?parent=159314"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/categories?post=159314"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/tags?post=159314"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}