This new Android malware may be the most twisted yet.
An interesting new type of malware has been uncovered, coded within two dozen Android apps that have accumulated hundreds of thousands of downloads in the Google Play store.
Android users who downloaded any of the apps embedded with this malware, dubbed “the Joker,” will need to check their credit card bills. Joker’s purpose, once deployed, is to sign up its victims to subscription services without their knowledge or consent. This new malware was first detected by CSIS Security Group malware analyst Aleksejs Kuprins, who has been monitoring the malicious code and penned a detailed analysison Joker.
SEE ALSO: Here’s how malicious Android apps are sneaking malware onto your phoneAccording to Kuprins, the malware “delivers a second stage component, which silently simulates the interaction with advertisement websites, steals the victim’s SMS messages, the contact list and device info.” Basically, any user that was infected by Joker possibly had their phone’s texts and contact list stolen, too.
But the simulated interactions are where Joker gets a bit more twisted.
“The automated interaction with the advertisement websites includes simulation of clicks and entering of the authorization codes for premium service subscriptions,” writes Kuprins. “For example, in Denmark, Joker can silently sign the victim up for a 50 DKK/week service (roughly ~6,71 EUR). This strategy works by automating the necessary interaction with the premium offer’s webpage, entering the operator’s offer code, then waiting for a SMS message with a confirmation code and extracting it using regular expressions. Finally, the Joker submits the extracted code to the offer’s webpage, in order to authorize the premium subscription.”
According to Lifehacker, the list of apps harboring the Joker malware include Advocate Wallpaper, Age Face, Altar Message, Antivirus Security - Security Scan, Beach Camera, Board picture editing, Certain Wallpaper, Climate SMS, Collate Face Scanner, Cute Camera, Dazzle Wallpaper, Declare Message, Display Camera, Great VPN, Humour Camera, Ignite Clean, Leaf Face Scanner, Mini Camera, Print Plant scan, Rapid Face Scanner, Reward Clean, Ruddy SMS, Soby Camera, and Spark Wallpaper.
Kuprins says that in total, the 24 apps racked up more than 472,000 downloads in the Google Play store. The apps have since been removed. If a user has any of those apps on their phone, they should be deleted.
According to the report, the current iteration of Joker malware campaign appears to go back as far as June of this year. Kuprins notes that Google removed the apps before his security firm reached out to the company, so it appears that the tech giant has been monitoring the situation as well.
Malwarehas longbeen a problemplaguing Android devices. Facebook has even gone so far as to file a lawsuitlast month against one developer, whose malware-ridden Android app engaged in click fraud on the social media company’s ad network.
While other recent Android-targeted malware campaigns have had broaderreach, such as “Agent Smith,”which has infected 25 million devices, Joker’s automated subscription attack certainly makes it among the more interesting.
Copyright © 2023 Powered by
'Joker' malware secretly charges Android owners' credit cards-逆水行舟网
sitemap
文章
9
浏览
28
获赞
8
Slack to Microsoft: Bundling Teams with Office is an antitrust violation
Slack is accusing Microsoft of breaking antitrust law in the European Union by bundling its competinTwitter makes it easier to search through a specific user's tweets
You know that moment when you just have to relive one of Elon Musk's old tweets, but you just can'tHuge 9.8 inch, 1oz Giant Wood Moth found in Australian school
Mothra is real, and she is Australian. Construction workers at an Australian primary school (i.e. elHow Peloton and its instructors became saviors in a hellish year at home
When schools, non-essential businesses, and travel borders around the world began to shutter in MarcGoogle officially announces Pixel 4a and (surprise!) Pixel 5 with 5G
We all knew the Pixel 4a reveal was coming today, but Google made the wait worth it. Google announceTikTok could soon let you tip your favorite creators
TikTok appears to be adding a Tips feature, allowing viewers to reward the creators fuelling its neviPhone 13 Pro teardown: The battery size increase is real
It's been a few moments since it's been available for purchase, and as is customary, the iPhone 13 PCongress slams Facebook over Instagram's effects on kids' mental health at hearing
"InstaGREED."That's what U.S. Senator Ed Markey (D-MA) claimed the IG in Instagram really stood forOnePlus under fire for pre
OnePlus is facing criticism for pre-installing Facebook apps on its newest smartphones—and appCrochet TikTok is the cutest place on the internet in 2021
When we spend so much of our time online, we’re bound to learn something while clicking and scPeople are learning their real bra sizes thanks to a calculator that's gone viral on TikTok
This viral breast size calculator that blew up on TikTok may change the way you think about bra sizeWhere are some Republican Congress members getting their news? From far
Mike Cernovich is a far-right personality who has claimedthat “date rape does not exist.&rdquoHow to fix missing data and battery drain in Apple's iOS 14, WatchOS 7
If you've been struggling with a fresh set of technical issues since the mid-September launch of iOSHow to DM on Twitter
So you want to DM someone on Twitter, or as the youths call it, "slide into someone's DMs." SendingCovid vaccine side effects show your immune system works, say doctors
Doctors are getting questions about the possibility of short-lived, though sometimes uncomfortable,