Discover a new kind of malicious code that can record the phone call to extort money
Researchers discovered a new malware that appeared on Android in 53 applications on third-party stores including computational applications, photo editors, and disk management tools. It has the ability to steal data, record conversations and background noise to blackmail victims.
This malware - dubbed RedDrop. When the application is infected, malicious code will be granted to allow it to run even if the device restarts. Meanwhile, 7 malicious applications are different from spy functions, extracting data will also be downloaded more. Once a user starts using a malicious application, a SMS message is sent to a paid service to use the victim's money without being detected.
RedDrop steals data types such as photos, IMEI and IMSI numbers, SIM card information, contact lists, nearby WiFi networks and recordings of sounds around the infected device and sends it to the Dropbox folder and developer Google Drive. He will use these data to extort money.
Researchers have discovered the malware for the first time on a Chinese server to entice victims to visit a domain containing sensitive content. But it is still unclear who is behind its development and distribution because he used more than 4,000 compromised domains to spread malicious applications.
Below is the screen shot shared by Wandera explaining the campaign using sensitive content to target victims.
The process used by hackers to spread malicious code.(Photo: According to Wandera).
RedDrop is one of the most sophisticated Android malware that researchers have ever seen spread widely. Therefore, in order to protect safety and avoid the risk of malicious code, Android users should download the application from Google Play Store or only from trusted websites.
See more:
- Detects two serious vulnerabilities on uTorrent that can help hackers execute malicious code or view download history on your computer
- Warning: A new code of virtual money training is spreading strongly in Vietnam
- Summary of effective Anti-Ransomware software
- Veil: anonymous browser deletes all traces, safer than Tor
- These are all the data about you that the websites you visit collect
You should read it
- 10 million Android devices are preinstalled with malicious code from the factory
- Warning: The new Facebook virus, a malicious code that is spreading rapidly through Messenger
- Android apps contain malicious code that uses motion sensors to avoid detection
- Warning: Dangerous new malicious code spills over to Vietnam
- Threats and risks from malware on USB Flash
- After WannaCry, Petya's 'extortion' malicious code is raging, this is a remedy to prevent
- Detecting new malicious code capable of 'evading' most anti-virus software
- Researchers create malware based on artificial intelligence
May be interested
- Apple shows users how to distinguish phishing emails from the App Storeapple has just published a guide on how to distinguish fraudulent emails.
- Kali Linux is available on the Windows Store but is flagged by Windows Defenderkali linux is available on windows 10 store for use with windows subsystem for linux, but it cannot bypass windows defender.
- Microsoft released an emergency security patch for a serious vulnerabilityif you are using windows os, install this security patch now.
- The risk of losing all passwords is due to the built-in password management tool on Windows 10an attacker can use keeper to steal all the passwords stored here.
- Warning: The new Facebook virus, a malicious code that is spreading rapidly through Messengerfrom yesterday (december 18, 2017), a new type of malicious code has appeared and raged in vietnam. this malicious code is not too sophisticated but is spreading very fast through facebook messenger because it is sent from the friends in the friend list.
- Detecting new malware on Android can damage phonesunlike other malware (malware) that only steal data, when entering android and loapi phones, the hardware must work overload causing serious damage.