Digital transformation

Millions of Android devices found to be infected with dangerous malware.

Phan Van Hoa October 6, 2024 07:50

Security experts from the renowned Russian security company Kaspersky have discovered a new and extremely dangerous variant of the Necro Trojan malware, infecting popular applications with tens of millions of downloads.

Accordingly, this malware not only infiltrates unofficial application sources but also targets several popular applications on the Google Play store, including those with tens of millions of downloads.

Ảnh minh họa
Illustrative image.

Alarmingly, Necro Trojans have the ability to automatically update and spread, turning infected devices into malware hotspots. Once inside a device, they can steal personal data, gain remote control, and cause other damage.

Necro Trojan malware How is it transmitted?

Kaspersky researchers have discovered a serious security vulnerability in the mobile application ecosystem. A malicious software development kit (SDK) has been widely used, posing a potential risk of infecting numerous applications with malware.

SDKs, which are tools that help developers integrate features such as advertising, analytics, or payments into applications, have become a "Trojan horse" for malware to penetrate deep into users' systems. The worrying thing is that if just one application using an infected SDK is compromised, all users of that application are at risk.

In this case, the Necro Trojan malware operates silently and dangerously. It not only displays advertisements in the background to generate illicit profits but also installs other Android application installers (APKs) onto the user's device without permission.

Furthermore, Necro Trojans use hidden WebView browser thumbnails to interact with paid services, resulting in users being charged unnecessarily for services they don't use. This not only causes financial loss but also significantly reduces the user experience.

Security experts say that Necro Trojan is not a new threat; previously, in 2019, this malware shocked the Android user community when it infected CamScanner, one of the most popular document scanning applications with over 100 million downloads.

After a period of "silence," Necro Trojans have returned and are more dangerous than ever, targeting a wide range of applications. The malware's ability to adapt and evolve constantly demonstrates its formidable nature in the world of cybersecurity.

Kaspersky researchers have discovered the Necro Trojan malware in several popular applications on Google Play, including Wuta Camera and Max Browser, which have over 11 million downloads. These applications were infected with malware from older versions and had been removed by Google after receiving warnings. Additionally, the Necro Trojan has appeared in unofficial versions of many other applications such as WhatsApp, Spotify, and Minecraft, posing significant risks to users.

Following reports of several apps on Google Play being infected with the Necro Trojan malware, Google acted swiftly. The company immediately removed the malicious versions of these apps from the app store and affirmed that Android users are proactively protected by Google Play Protect, a feature capable of detecting and blocking malicious apps, even those originating from external sources.

How can Android users protect their devices from the Necro malware? Trojan?

Necro Trojans are a dangerous type of malware that can steal personal information and harm users' systems. To protect your device from this malware and similar threats, follow these four simple steps:

1. Install powerful antivirus software:Although Google Play Protect is a basic layer of protection, Necro Trojans and many other types of malware have proven that they can completely bypass it. To comprehensively protect your Android device, add a solid layer of protection with professional antivirus software. With the ability to detect and remove a wide range of threats, antivirus software will give users greater peace of mind against attacks from malware and ransomware.

2. Download apps from trusted sources:The Google Play Store is considered the safest place for users to download apps. Therefore, users should download apps from the Google Play Store and avoid downloading unofficial apps or suspicious links, especially those sent via SMS or email, to protect their personal information and important data.

3. Carefully check the application's permissions:Be cautious when granting app permissions. If an app requests access to seemingly unnecessary features, such as location access for a simple game, it may be suspicious. Avoid granting unnecessary permissions and don't grant access unless absolutely necessary. These permissions could give malware access to sensitive user data.

4. Update your device and apps regularly:Regularly updating your phone and apps is crucial for staying safe. Updates often include security fixes that protect against newly discovered vulnerabilities. Outdated apps or systems can easily become targets for malware.

The discovery of Android malware like the Necro Trojan reminds us that no platform is absolutely secure. Whether users are using Android or iOS, the best protection is to always be cautious, regularly update software, and only download apps from trusted sources.

Source: Gizchina
Copy Link
0 0 0
x
Millions of Android devices found to be infected with dangerous malware.
Google News
POWERED BYFREECMS- A PRODUCT OFNEKO