SMS-Controlled Malware Hijacking Android Phones
wiredmikey writes "Security researchers have discovered new Android malware controlled via SMS that can do a number of things on the compromised device including recording calls and surrounding noise. Called TigerBot, the recently discovered malware was found circulating in the wild via non-official Android channels. Based on the code examination, the researchers from NQ Mobile, alongside researchers at North Carolina State University said that TigerBot can record sounds in the immediate area of the device, as well as calls themselves. It also has the ability to alter network settings, report its current GPS coordinates, capture and upload images, kill other processes, and reboot the phone. TigerBot will hide itself on a compromised device by forgoing an icon on the home screen, and by masking itself with a legit application name such as Flash or System. Once installed and active, it will register a receiver with a high priority to listen to the intent with action 'android.provider.Telephony.SMS_RECEIVED.'"
Security Alert: New Android Malware — TigerBot — Identified in Alternative Markets
And frist?
I am Slashdot. Are you Slashdot as well?
... such as Flash...
I'm sure there's a joke in here somewhere, but I can't find it...
And quietly wondering what "SMS-Controlled Mahjong Android Phones" were?
Support the EFF and Creative Commons. The war is coming, and they're supporting you...
Dr. Xuxian Jiang has been busy identifying all sorts of Android malware.
I am Slashdot. Are you Slashdot as well?
Downloading things from backwater websites has a higher risk of malware being present than downloading from reputable sources. ...That's some fine detective work there, Lou.
More seriously; It shouldn't come as any surprise that given how valuable your location data and personal information is, and how much of that is stored on a cell phone, and how most companies have declared themselves to have absolute rights to it (go ahead, try and stop us! *evil overlord laugh*), it shouldn't be surprising that other people (legitimately or otherwise) are hopping on the "All Your Privacy Are Belong To Us" gravy train.
So people will be all like "Oh noes! Someone wrote an evil bot!" ... Of course, they'll forget that the malware that the telecos have loaded on your phone makes that look positively amateur.
#fuckbeta #iamslashdot #dicemustdie
If you root your phone, your phone could be rooted!
I can't record my own audio on my Android phone but a malware app can? So let me get this straight - to get what I believe should be a regular functionality I have to have someone install a malware app? Ridiculous. This is almost like giving someone syphillis to cure them of AIDS!
I've been waiting for an app that allows me to directly record calls on my DX... now, it seems someone has figured out how to make that happen.
On the downside, they stuck the code in some malware I have no intention of installing.
On the up side, someone wrote the code that allows such recording, so making an app that utilizes said code without the whole 'botnet' aspect should be fairly easy, right?
An enigma, wrapped in a riddle, shrouded in bacon and cheese
This is not the first Android malware reported, and the story is always missing three key pieces of information:
1) What applications (or sites) were hosting the malware so that we can check to see if we have those apps.
2) How to tell if you are infected (and saying "it will register a receiver with a high priority to listen to the intent with action 'android.provider.Telephony.SMS_RECEIVED" doesn't really explain anything, especially to the layperson).
3) What to do about it if you are infected.
This story is no different
"Tell me doctor, with all of your defenses, are there any provisions for an attack by killer bees?"
I guess nobody ever roots their iPhones to install homebrew software. All of those rooting videos on youtube must be my imagination.
@AC - Just because YOU don't have a need or desire to install software from alternative sources doesn't mean nobody else should. That's not even a platform specific desire. Apple or Android - if you own a smartphone you have a portable computer in your pocket. There will always be people who want to tinker and think outside the box and push the limits of what they can do WITH A DEVICE THEY OWN. They shouldn't have to play by Apple's rules, Google's rules, or yours. It doesn't make them 'fandroids', it makes them curious.
This is not available on AndroidMarket/GooglePlay, so how widespread is it?
"TigerBot hasnâ(TM)t yet surfaced in Google Play (formerly Googleâ(TM)s Android Market) but does appear to be making the rounds on alternative markets." TFA
Join the Slashcott! Feb 10 thru Feb 17!
Oh, sneaky. \o/
A app store put together by Google has a crappy search engine. Talk about irony.
When I search for stuff in the Play Store (what a stupid name change) the problem usually isn't no results. The issues is there's no preferences to sort by highest rated or other criteria. Most searches return dozens of hits but it's a mixed bag as far as relevancy.
BOTH here http://news.slashdot.org/comments.pl?sid=2772023&cid=39621921 + here http://news.slashdot.org/comments.pl?sid=2772023&cid=39621993 (good luck you need it).
They're asked of you again, here http://news.slashdot.org/comments.pl?sid=2772023&cid=39623777
and here
http://news.slashdot.org/comments.pl?sid=2772023&cid=39623897
YOU ADMIT ERROR: U FAILED -> http://news.slashdot.org/comments.pl?sid=2772023&cid=39624889 U FAIL, troll, badly... admitting you failed.
"Accepted that I was wrong that Hilton.com IS using Windows." - by Rasperin (1034758) on Monday April 09, @06:25PM (#39624293) Don't come in here calling others shit, shill, or troll again (or you'll get the SAME result, again). You've been fairly warned.
"Accepted that I was wrong that Hilton.com IS using Windows." - by Rasperin (1034758) on Monday April 09, @06:25PM (#39624293) Don't come in here calling others shit, shill, or troll again (or you'll get the SAME result, again). You've been fairly warned.
How do I "by" something? I'm at a loss.