Connect with us


Over 300,000 users have been infected by a Trojan dropper in Play Store applications



Android segurança

click to copy

Cybersecurity researchers in ThreatFabric spoke in detail about a family of malicious programs that were not detected by the app store Google games and that he could reveal passwords for hundreds of thousands of people. Trojans to steal Android passwords masqueraded as readers QR code, fitness monitors, applications for working with cryptocurrency and others, according to the publication on the website ZDNet

More than 300,000 smartphone users Android downloaded this malware for banking Trojans.

According to ThreatFabric researchers, four different types of malware are delivered to victims through malicious versions of frequently downloaded applications such as document scanners, QR code readers, fitness monitors and cryptocurrency applications.

Apps disguise their malicious intent in real-world functions, encouraging users to download and install the app without being detected by the Play Store.

The Anatsa malware is one of four well-documented by researchers and has been installed by over 200,000 Android users. Researchers call it an “advanced” banking Trojan.

“Anatsa is a very advanced Trojan for Android with RAT and semi-ATS capabilities. It can also perform classic overlay attacks to steal credentials, accessibility logging (hijacking whatever is displayed on the user’s screen), and keeping keyloggers. ThreatFabric has previously reported cases of Anatsa being distributed alongside Cabassous as part of virus-killing campaigns across Europe, ”the researchers write in a blog post.

The Anasta malware has been active since January, but in June 2021, researchers discovered the first dropper disguised as a document scanning app. In total, ThreatFabric analysts managed to identify 6 Anatsa droppers posted on Google Play since June 2021.

See also  Xiaomi Mi Band 6 NFC: the best smart bracelet could soon arrive in Europe

First of all, users become victims of phishing emails or fake advertising campaigns that lead victims to malicious applications.

One such application is the QR code scanner, which has been installed by only 50,000 users. But there were a lot of positive reviews on its download page that could have motivated people to download the app, ZDNet emphasizes.

Once downloaded, users are prompted to update the app to continue using it, and it is this update that connects to the C&C server and downloads the Anatsa payload to the device, the website reports, providing attackers with tools to steal bank details and other information.

Another malware family detailed by the researchers is Alien, a Trojan for Android that can also hijack two-factor authentication features that have been active for over a year and have received 95,000 installations via malicious apps in the Play Store.

One of the applications infected with this Trojan was a gym and fitness center. In this case, the app was still accompanied by a website to make it look even more legitimate, which also served as the command and control center for the Alien malware.

Like Anasta, after the initial download, users are forced to perform a fake app update in order to use it, which balances the load.

Hydra and Ermac, with at least 15,000 downloads, were other forms of malware detailed by ThreatFabric researchers, identified as the source of the attack by cybercriminal group Brunhilda, known for attacking Android devices with banking malware.

According to ZDNet, ThreatFabric reported all malicious apps to Google and they have either been removed or are under review.

See also  The Huawei MateView SE monitor is available from €189 and includes a version with dynamic support

“The Android banking malware ecosystem is evolving rapidly. These numbers, which we are now seeing, are the result of a slow but inevitable shift in focus from criminals to the mobile environment. With this in mind, the Google Play Store is the most compelling platform to use. to serve malware, ”ThreatFabric mobile malware expert Dario Durando told ZDNet.

With information from ZDNet

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *


‘My power is really low’: NASA’s Mars Insight rover prepares to launch from the Red Planet



NASA Lander InSight He has delivered what may be his last message from Mars as he embarks on a historic mission to uncover the secrets of the Red Planet’s interior.

In November, the space agency warned that the probe could be running out of time as dust continued to condense and stifle InSight’s power.

“Spacecraft power generation continues to decline as windblown dust accumulates on solar panels,” NASA said in a statement. Update November 2. “The end is expected to come in the coming weeks.”

message shared NASA The InSight Twitter account tweeted on Monday: “My power is very low so this might be the last photo I can upload. Don’t worry about me: my time here has been productive and uneventful. If I can keep talking to my mission team, I will—but I will.” Subscribe here soon. Thank you for staying with me.”

My power is very low, so this might be the last photo I can upload. But don’t worry about me: my time here has been productive and uneventful. If I can keep talking to my mission team, I will, but I’ll sign here soon. Thank you for staying with me.

— NASA InSight (@NASAInSight) December 19, 2022

A geologist robot armed with a hammer and a seismograph first reached the barren expanse of Elysium Planitia in November 2018.

Since then, she has carried out geological excavations, taking the first measurements of earthquakes with a high-tech seismometer placed right on the surface of Mars.

Last month, the solar-powered car released an update to remind us of its time in space.

“I was lucky to live on two planets. Four years ago I made it safely to the second one, much to the joy of my family at first. Thanks to my team for taking me on this journey of discovery. I hope I can be proud of you.”

According to the published mission, Insight has measured more than 1,300 seismic events since it was published, and more than 50 of them had signals clear enough for the team to extract information about their location on Mars. Results.

The probe’s data also provided detailed information about Mars’ interior, liquid core, surprisingly variable remnants beneath the surface of an extinct magnetic field, climate and seismic activity.

old for Its launch in 2018NASA Chief Scientist Jim Green said the mission was “fundamental to understanding the origins of our solar system and how it became what it is today.”

NASA will not declare the mission complete until Insight confirms the arrival of two spacecraft orbiting Mars that are relaying their information back to Earth.

In 2018, the veteran rover announced the capabilities end of his 15 year stay Sending an incomplete photo of the Valley of Perseverance.

A severe dust storm darkened the sky around the solar-powered rover, shattering the sun and leaving behind a dark image with white spots due to camera noise. The transmission is interrupted before the complete image can be transmitted.

See also  Midnight Suns Season Pass Adds Deadpool, Venom, Morbius and Storm
Continue Reading


What’s new on February 7, 2023



OnePlus 11 5G Buds Pro 2 evento

Being very close companies, OPPO and OnePlus have decided to create a new partnership, with the latter being a pioneer in the market. It has become the representative of the best smartphones in the group, and this will be seen very soon.

Proving this, OnePlus has announced that it will have news soon. The following brand assets will be announced on February 7, 2023. We are talking about OnePlus 11 5G and Buds Pro 2.

In recent years, OnePlus has been showcasing new hardware in an attempt to find a new place in the market. The brand has not always seen its full potential, betting on mid-range or entry-level smartphones.

The situation is changing, and the novelty will go on sale in early 2023, February 7. It is on this day that the new OnePlus 11 5G will be presented with all the expected news. We definitely have the new Qualcomm Snapdragon 8 Gen 2 SoC here. There's still 16GB of storage left and 256GB of onboard storage.

OnePlus 11 5G Buds Pro 2 events

It is expected that he will receive a 6.7-inch OLED display with a resolution of 1440p and a frequency of 120 Hz. In the field of photography, we will have an important change: a 50 MP main camera, a 48 MP ultra wide-angle camera and a 32 MP telephoto lens with 2x zoom. For selfies and video calls, you'll have a 16-megapixel camera.

The photography partnership with Hasselblad will continue with OnePlus for fine-tuning and some additions. This alliance has brought important results for the best smartphones of the brand, guaranteeing the best photos in any situation.

See also  Midnight Suns Season Pass Adds Deadpool, Venom, Morbius and Storm

OnePlus 11 5G Buds Pro 2 events

In addition to the new OnePlus 11 5G, another brand new feature is also expected to arrive at the event. We're talking about the Buds Pro 2, which are solidifying an audio commitment that's becoming more of a reality. The brand promises "rich stereo quality sound with crystal clear clarity".

Stays like this marked by the beginning of February, another important novelty will enter the market. OnePlus wants to reclaim its place, and that will be the brand's bet for years to come. OnePlus 11 5G and Buds Pro 2 take the first step in this direction.

Continue Reading


New POCO Smartphone Seen in Certification May Debut Soon



New POCO Smartphone Seen in Certification May Debut Soon

According to information provided by Mukul Sharma, the unidentified POCO device can be identified by the model number 22127PC95I. Due to the fact that it was first seen online, the marketing name of this equipment is still a mystery.

POCO has not launched new mobile devices, including smartphones, to the market for some time now. On the other hand, several POCO smartphones such as POKO X5 and X5 Pro have been spotted on various certification sites, suggesting that the company will release these products soon. Today a new smartphone from the sub-brand xiaomi has been spotted on the BIS India website but the device does not have a name or any other details associated with it.

According to information provided by Mukul Sharma, the unidentified POCO device can be identified by the model number 22127PC95I. Due to the fact that it was first seen online, the marketing name of this equipment is still a mystery. It is possible that it will debut as a mid-range smartphone. The Bureau of Indian Standards (BIS) website, other than the model number of the smartphone, does not provide any additional information about the device. However, this seems to indicate that the product will be available in the Indian market very soon.

In other related news, POCO X5 5G has recently been seen on several certification sites including SIRIM in Malaysia, BIS in India and the US FCC. According to various sources, it is possible that this is a renamed or modified version Redmi Note 12 5Gwhich was recently released in China.

See also  The Huawei MateView SE monitor is available from €189 and includes a version with dynamic support

It is supposed to be equipped screen 6.67″ AMOLED display with 120Hz refresh rate and chipset Snapdragon 4 Gen 1 inside. Can run MIUI 13 based on android 12 and have LPDDR4x RAM in addition to UFS 2.2 storage. The front camera is rumored to be 8MP while the main rear camera will be 48MP with 2MP depth. May have the ability drums 5000 mAh and 33W fast charging support.

In addition POCO X5 Pro 5G has recently been seen on various sites dedicated to certification. The battery is said to have a capacity of 5000 mAh and can charge at 67W. It will come with MIUI 14 preinstalled and will support n5, n7, n38, n41, n77 and n78 network bands. 5G.

Read the latest news from the world of technology in Google News, facebook e Twitter and also in our telegram group

Every day we bring you dozens of news from the world of Android in Portuguese. Follow us on Google News. Click here and then on “Subscribe”. Thank you!

Continue Reading