Security News

SOVA malware adds ransomware feature to encrypt Android devices
2022-08-13 14:12

The SOVA Android banking trojan continues to evolve with new features, code improvements, and the addition of a new ransomware feature that encrypts files on mobile devices. With the latest release, the SOVA malware now targets over 200 banking, cryptocurrency exchange, and digital wallet applications, attempting to steal sensitive user data and cookies from them.

85% of Android users are concerned about privacy
2022-08-11 18:26

Eighty-five percent of users are most interested in finding out how to set up privacy settings for services on Android, according to data collected by Kaspersky's Privacy Checker website. Concerns over digital privacy are widespread. A "Digital Privacy and Security Survey" conducted by the Calyx Institute in 2021, found that 80% of respondents were worried about the topic of digital privacy over the last year and 59% said they felt more aware of how their data is treated than a year ago.

Hackers install Dracarys Android malware using modified Signal app
2022-08-09 14:02

Meta first reported the new Android malware in its Q2 2022 adversarial threat report, where they briefly mentioned its data-stealing, geo-locating, and microphone-activation capabilities. While Meta mentions laced versions of Telegram, WhatsApp, and YouTube, Cyble's investigation only uncovered a trojanized version of the Signal messaging app.

Facebook finds new Android malware used by APT hackers
2022-08-05 14:40

Meta has released its Q2 2022 adversarial threat report, and among the highlights is the discovery of two cyber-espionage clusters connected to hacker groups known as 'Bitter APT' and APT36 using new Android malware. These cyberspying operatives use social media platforms like Facebook to collect intelligence or to befriend victims using fake personas and then drag them to external platforms to download malware.

Facebook ads push Android adware with 7 million installs on Google Play
2022-07-30 15:14

Several adware apps promoted aggressively on Facebook as system cleaners and optimizers for Android devices are counting millions of installations on Google Play store. To evade deletion, the apps hide on the victim's device by constantly changing icons and names, masquerading as Settings or the Play Store itself.

Over a Dozen Android Apps on Google Play Store Caught Dropping Banking Malware
2022-07-30 03:40

A malicious campaign leveraged seemingly innocuous Android dropper apps on the Google Play Store to compromise users' devices with banking malware. These 17 dropper apps, collectively dubbed DawDropper by Trend Micro, masqueraded as productivity and utility apps such as document scanners, QR code readers, VPN services, and call recorders, among others.

These 28+ Android Apps with 10 Million Downloads from the Play Store Contain Malware
2022-07-27 13:37

As many as 30 malicious Android apps with cumulative downloads of nearly 10 million have been found on the Google Play Store distributing adware. While masquerading as innocuous apps, their primary goal is to request permissions to show windows over other apps and run in the background in order to serve intrusive ads.

New Android malware apps installed 10 million times from Google Play
2022-07-26 17:21

A new batch of malicious Android apps filled with adware and malware was found on the Google Play Store that have been installed close to 10 million times on mobile devices. If you installed any of these apps before their removal from the Play Store, you will still need to uninstall them from your device manually and run an AV scan to clean any remnants.

Roaming Mantis Financial Hackers Targeting Android and iPhone Users in France
2022-07-26 02:58

The mobile threat campaign tracked as Roaming Mantis has been linked to a new wave of compromises directed against French mobile phone users, months after it expanded its targeting to include European countries. Attack chains involving Roaming Mantis, a financially motivated Chinese threat actor, are known to either deploy a piece of banking trojan named MoqHao or redirect iPhone users to credential harvesting landing pages that mimic the iCloud login page.

Google Bringing the Android App Permissions Section Back to the Play Store
2022-07-22 18:28

Google on Thursday said it's backtracking on a recent change that removed the app permissions list from the Google Play Store for Android across both the mobile app and the web. "We heard your feedback that you find the app permissions section in Google Play useful, and we've decided to reinstate it. The app permissions section will be back shortly."