It took three years for Google to discover this dangerous Spyware on Android
Google recently discovered a very sophisticated type of Spyware spyware on Android. The frightening thing is that this type of Spyware has not been detected during the last 3 years based on the extremely special ability to destroy itself.
Called Chrysaor, this Android Spyware has been used to target social activists and journalists in Israel, Georgia, Turkey, Mexico, UAE and some other countries.
Chrysaor was discovered by researchers at Lookout and Google. They believe that this type of spyware was created by an organization called NSO Group Technologies in Israel, which specializes in creating secret types of spyware operating inside smartphones and selling it to individuals and groups. officials, governments of some countries or even dictatorships. The types of Spyware created by this organization are often extremely powerful, confidential and effective. Last year, the organization also created a type of Spyware on iOS 9.3 called Pegasus with the aim of fighting human rights activists in the United Arab Emirates.
Chrysaor Spyware was discovered to be installed on about 36 Android devices, but researchers believe that the number of victims will be more than expected. Below is a list of countries and the number of phones infected with this spyware:
Google said it contacted users at risk of spyware infection, turned off apps on affected devices and made changes in the Verify apps feature to protect all people. use.
Spyware Chrysaor on Android brings a variety of spy functions, including:
- Filter data from popular apps like Gmail, WhatsApp, Skype, Facebook, Twitter, Viber and Kakao.
- Remote device control based on commands in SMS format.
- Record voice and video calls.
- Track keyboard operation and screen capture.
- Turn off the system update feature to prevent patching of security holes.
- Track contacts, messages, emails and browsing history.
- Self-destruction when there is a risk of being detected.
Thanks to the self-destruct feature that security researchers at Google take a long time to find this dangerous Spyware.
Researchers believe that APK Chrysaor has also been released as phishing SMS messages, like Pegasus on iOS devices.
While Pegasus takes advantage of three zero-day vulnerabilities in Apple's iOS operating system to jailbreak the target device, Chrysaor uses the flaw from the famous Android root process, Framaroot to root the device and take control. Full control of the operating system.
Lookout warned that, since Chrysaor began its development in 2014, it is more likely that the NSO group has detected zero-day vulnerabilities on Android and deployed them with the latest version of Chrysaor for Android. .
Lookout also provided a complete, detailed report on Spyware Chrysaor, entitled: Pegasus for Android: Technical Analysis and Findings of Chrysaor . You can click here if you want to delve into this type of Spyware.
How to protect your Android device from hackers? Google recommends that users only install applications from reputable sources, protect your device with a pin or password, turn on the Verify apps feature in the settings section and always update. Your device on a regular basis.
Refer:
- No anti-virus software can detect this extremely dangerous new Ransomware on Android
- Completely remove Adware and Spyware on your system
- Differentiate types of malware
- Difference between Virus, Spyware and Malware
You should read it
- Viruses transmitted from smartphones to computers appear in Vietnam
- The dangers of spyware on iPhone
- Sneaking malware on the Internet
- 8 indications that the computer is infected with spyware
- Anti-spy expert
- Many Android users discover that their phones have spyware installed after traveling to China
- NoAdware v4.0: free from spyware infection!
- The standard of spyware is adopted
May be interested
- You will have to play the game if you want to get rid of this new Ransomwarea new ransomware called rensenware will lock all files inside the device. the victim will have to play a game called th12: undefined fantastic object and must achieve at least 200 million points in lunatic level mode if he does not want to say goodbye to the entire file in the device system.
- The new threat in Linux operating system can have 'incalculable' consequences.a new virus that appears to attack a linux system, called linux / shishiga, could become a major security threat.
- Download and sell Windows patches for all versions to avoid being hit by a massive cyber attack, affecting 150 countries and still spreadinga large-scale network attack is spreading globally, downloading windows updates immediately for prevented versions.
- The more dangerous WannaCry version 2.0 has appeareddespite being stopped by a 22-year-old hero, the wannacry 2.0 version will be a new challenge for heroes.
- How to handle the emergency WannaCry malicious code from the National Information Security Departmentthe information security department has issued guidelines for emergency handling of wannacry extortion codes for users as well as organizations and businesses to avoid damage caused by this malicious code. vietnam is currently on the list of 20 countries attacked by this malicious code.
- Microsoft released an emergency patch to prevent ransomware from attackingmicrosoft has released an emergency patch for windows versions to prevent further attacks by wannacry ransomware (microsoft flagged as ransom: win32 / wannacrypt).