{"id":203433,"date":"2020-02-16T01:22:36","date_gmt":"2020-02-15T22:22:36","guid":{"rendered":"https:\/\/ww-vb.mine.nu\/w108\/heres-your-latest-reminder-that-android-security-is-a-joke-bgr\/"},"modified":"2020-02-16T01:22:36","modified_gmt":"2020-02-15T22:22:36","slug":"heres-your-latest-reminder-that-android-security-is-a-joke-bgr","status":"publish","type":"post","link":"https:\/\/hameed.nwar.uk\/sa\/heres-your-latest-reminder-that-android-security-is-a-joke-bgr\/","title":{"rendered":"Here\u2019s your latest reminder that Android security is a joke \u2013 BGR"},"content":{"rendered":"<p> [ad_1]<br \/>\n<\/p>\n<div>\n<p>The pile of Android threats to watch out for has been mounting at a pretty rapid clip so far this year, with apps sneaking into the Google Play Store that can do everything from log in to your Google and Facebook accounts, access key features of your device, spread malware and so much more. Google, of course, kicks these apps out of its store as soon as they\u2019re found, which we note each time this occurs \u2014 though each instance is also one more reminder of just how much of a minefield the threat landscape remains. Meanwhile, as if all that weren\u2019t enough, the security firm Malwarebytes is calling attention to what may be one of the nastiest Android infections yet \u2014 a piece of malware that\u2019s actually been circulating for a while now that can reinfect a device after almost every defense has been thrown at it, including a factory reset.<\/p>\n<p>Back in August, this particular malware strain, called xHelper, had already been detected by Malwarebytes\u2019 antivirus app on some 33,000 mostly US devices. That eventually put a target on the malware, by researchers who regarded it as a major Android threat on the basis of those numbers alone. xHelper is essentially a so-called trojan dropper, installing malicious APKs on a device that can, in turn, be used to install a variety of malicious apps.<\/p>\n<p>What makes this one such a tough threat is that it can apparently survive factory resets, which return the device to its original state. Researchers at Symantec also noticed this back in October, writing about how they\u2019d \u201cobserved a surge in detections for a malicious Android application that can hide itself from users, download additional malicious apps, and display advertisements. The app, called xHelper, is persistent. It is able reinstall itself after users uninstall it and is designed to stay hidden by not appearing on the system\u2019s launcher.\u201d The Symantec researchers went on to note that, by their tally, it had already infected more than 45,000 devices over the previous six months, and that many users were complaining about random pop-up ads and how the malware keeps showing up even after they\u2019ve manually uninstalled it.<\/p>\n<p>Per Symantec, once xHelper connects to its command and control server, other payloads like rootkits might be downloaded to the compromised device. It\u2019s believed that malware from xHelper\u2019s server can actually perform a variety of functions, \u201cgiving the attacker multiple options, including data theft or even complete takeover of the device.\u201d<\/p>\n<p>This all came back to light this week, when Malwarebytes published a report detailing how one device owner kept removing the malware only to see it return to her device inside of an hour. The source of this malware is still being investigated by researchers \u2014 but, in the meantime, device owners can keep their gadgets safe by making sure their software stays updated, avoiding unfamiliar and untrustworthy sites when downloading apps, frequently backing up data, installing a strong security app, and being aware of permissions requested by apps.<\/p>\n<p>\n\t<span class=\"description img-caption\"><span class=\"source\">Image Source: quietbits\/Shutterstock<\/span><\/span><\/p>\n<div class=\"author-bio\">\n<div class=\"author-bio-image-container with-avatar\">\n\t\t<img decoding=\"async\" src=\"http:\/\/ww-vb.mine.nu\/w108\/wp-content\/uploads\/2020\/02\/1580530133_630_All-four-major-US-wireless-carriers-are-suffering-outages-right.png\" height=\"52px\" width=\"47px\"\/><\/div>\n<p>\n\t\tAndy is a reporter in Memphis who also contributes to outlets like Fast Company and The Guardian. When he\u2019s not writing about technology, he can be found hunched protectively over his burgeoning collection of vinyl, as well as nursing his Whovianism and bingeing on a variety of TV shows you probably don\u2019t like.\t<\/p>\n<\/div><\/div>\n<p><script>\n!function(f,b,e,v,n,t,s)\n{if(f.fbq)return;n=f.fbq=function(){n.callMethod?\nn.callMethod.apply(n,arguments):n.queue.push(arguments)};\nif(!f._fbq)f._fbq=n;n.push=n;n.loaded=!0;n.version='2.0';\nn.queue=[];t=b.createElement(e);t.async=!0;\nt.src=v;s=b.getElementsByTagName(e)[0];\ns.parentNode.insertBefore(t,s)}(window,document,'script',\n'https:\/\/connect.facebook.net\/en_US\/fbevents.js');\nfbq('init', '2048158068807929');\nfbq('track', 'ViewContent');\n<\/script><br \/>\n<br \/>[ad_2]<br \/>\n<br \/><a href=\"https:\/\/bgr.com\/2020\/02\/14\/android-malware-discovered-keeps-reinfecting-targets\/\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>[ad_1] The pile of Android threats to watch out for has been mounting at a pretty rapid clip so far this year, with apps sneaking into the Google Play Store that can do everything from log in to your Google and Facebook accounts, access key features of your device, spread malware and so much more. &hellip;<\/p>\n","protected":false},"author":1,"featured_media":199134,"comment_status":"closed","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[20],"tags":[],"class_list":["post-203433","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-tie-tech"],"_links":{"self":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/posts\/203433","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/comments?post=203433"}],"version-history":[{"count":0,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/posts\/203433\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/media\/199134"}],"wp:attachment":[{"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/media?parent=203433"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/categories?post=203433"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hameed.nwar.uk\/sa\/wp-json\/wp\/v2\/tags?post=203433"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}