10 million Android devices are preinstalled with malicious code from the factory
At the Black Hat event in the US last weekend, Maddie Stone, a Google Project Zero project security expert, warned that bad guys have compromised with the manufacturer to install malicious code.
Specifically, about 10 million Android devices from more than 200 manufacturers have been found to install malicious software right at the factory rather than waiting for users to accidentally install. These malware are covered by the manufacturer's available applications, so users will find it difficult to detect.
After reaching the users, malicious code will silently download and install other underground software on their device. After that, they will display ads, steal information or hijack the device.
Stone said bad guys only need to compromise with a few manufacturers, not trying to seduce users as malicious applications will work on millions of devices.

Android is an open operating system, allowing manufacturers to easily customize software and install many things. Google cannot strictly control such things because the Android ecosystem is now extremely large and this is the reason why the phone has been installed maliciously since the factory was shipped.
There are detected phones that are pre-installed to 400 applications right from the factory, some of which appear as a useful application so censors are hard to detect.
In 2017, Google discovered 7.4 million Android devices infected with a malicious code called Chamois, capable of sending high-cost messages, displaying advertisements, downloading plug-ins and applications. background use. By March 2019, Google had reduced the number of Chamois "victims" to just 0.7 million.
- 238 applications found on Play Store contain malicious code that paralyzes smartphones
You should read it
- Warning: The new Facebook virus, a malicious code that is spreading rapidly through Messenger
- Appearing dangerous Android malicious code specializing in stealing chat content on Facebook Messenger, Skype ...
- Warning: New malicious code is infecting about 500,000 router devices
- Android apps contain malicious code that uses motion sensors to avoid detection
- Malware Judy attacked more than 36.5 million Android phones
- Find bug in Emotet malware, prevent it from spreading for 6 months
- How to check if your Android phone is infected with Android Gooligan malware?
- Detect new malicious code to attack Android device
May be interested
- Discovered a new line of malicious Android code that steals user data on the electronic application marketrecently a security expert at trend micro discovered a new line of malicious code first written in kotlin, a kind of static language for android programmers.
- Warning: The new Facebook virus, a malicious code that is spreading rapidly through Messengerfrom yesterday (december 18, 2017), a new type of malicious code has appeared and raged in vietnam. this malicious code is not too sophisticated but is spreading very fast through facebook messenger because it is sent from the friends in the friend list.
- Series of Android applications contain malicious code you should remove immediately from your devicecybersecurity researchers have discovered many android apps containing adware and information-stealing malware on the google play store.
- Most Android anti-virus software cannot detect malicious APK filesapk file containing malicious code is a method that hackers often use to attack android users. unlike ios, android users can download and install apps from third-party app stores or download the app's apk file and install it themselves.
- Android apps contain malicious code that uses motion sensors to avoid detectionthe sad fact is that after many efforts by google to isolate the play store from malware, malicious applications somehow find new ways to deceive measures. malware prevention ...
- Discovered a group of hackers who use secret code to spy on 21 countriesa group of secret hackers specialized in using android malicious code and other sophisticated reconnaissance tools to steal messages, call history, documents of the press, military, corporation and many other targets at 21 newly discovered country in beirut.
- Many cheap Android smartphones are 'promotional' codes for usersavast has discovered a kind of malware called cosiloon that is included in many cheap android phones that are not certified by google.
- Dozens of Android applications are infected with malicious codedozens of applications on android market have been deleted because of malicious code. users who have downloaded these infectious applications may lose data.
- Malware sneaks into iOS through Apple's official distribution channelstaking advantage of distribution channels of unapproved applications for testing purposes, malicious code has quietly sneaked into ios users' devices.
- How to detect malicious apps on Androidinstalling applications outside of google play is often potentially risky, making users more likely to steal personal data and money. therefore, the detection of malicious applications on android phones will help you distinguish what will be a safe application, where the application contains malicious code, thereby minimizing the download of dangerous applications. security and protection of android devices become safer.