Trojan banks surpass the malware defense of Google Play
Researchers have discovered a banking malware on Android hidden on Google Play and use new tactics.
A game called Bubble Shooter Wild Life and the app called Earn Real Money Gift Cards on Google Play Store is actually used to put a bank malware named BankBot on the phone. 'Malware only really works when the Trojan is actually released on the victim's device and therefore, beyond Google's malware scanner called Bouncer,' Han Sahin, co-founder of Securify told the El Reg.
The separate studies from Zscaler gave results like what Securify found. Applications can abuse access on Android to download external programs that users do not know.
Hidden malware on Google Play Store applications
'Poisoned applications hide themselves by hiding on Google Play and using techniques such as Time Delay or Code Obfuscation (turning variable names, objects . into meaningless characters). At this time, the app is still quite new on the Store and has less than 5,000 downloads. However, there is a concern about the rise of garbage applications, 'Zscaler warned.
El Reg asked Google to comment on this, specifically how the bad guys figured out how to get the malicious code to pass the security control but still didn't get a response. Recent security issues are ringing for Android users to be careful when downloading applications, even on Google Store
You should read it
- New bank trojan detection on Android Red Alert
- Stolen bank account with Trojan Banking
- Detected 4 banking trojans in 11 apps on Google Play Store
- Destroy ZeuS, the 'lord' of banking trojans
- Trojan root Android device bypasses Google's security mode on Play Store
- The new Trojan silently steals $ 1 billion from bank accounts
- Use SEO to bring Google search results to bank trojans
- Risks from malware and how to prevent it
May be interested
- New malware-digging tool on Linux devicesa malware author has just created a digital digging tool that infects linux devices, using open or default telnet login information.
- New variant of ransomware Arena Crysis appearedresearcher michael gillespie has discovered a new variant of ransomware crysis / dharma that adds the .arena extension to the encrypted file.
- Watch out for the risk of spreading the virus from Facebook Messenger on Windows, MacOS and Linuxsecurity researchers at kaspersky lab have discovered a cross-platform campaign taking place on facebook messenger - where users often get video links directed to a fake site, tricking users into installing malware.
- WireX DDoS Botnet: tens of thousands of Android phones are hackedif you believe that just because you download the app from the official google store will not be malware, think again.
- LabVIEW vulnerability allows hackers to attack your computerif you need to use labview software to design machines or industrial devices, you should be alert when opening any vi file (virtual instrument). recently, security researchers have discovered a serious flaw in this software.
- The new Gazer - the back door targets the ministries and embassies around the worldsecurity researchers at eset have discovered a new malware with the aim of consular offices, ministries and embassies around the world to track governments and diplomatic activities.