Android users have a new threat to contend with, according to a sixteen-page whitepaper outlining a new malware strain.
The paper was published by a group of security researchers working for Bitdefender. They identified a robust new strain of malware called “Triout.”
According to the report, although they just discovered the malware a month ago, there are indications that it has been in use since at least mid-May of this year.
Among other things, it can:
Steal call log data
Collect and steal SMS messages
Record every call taking place on the phone
Upload recordings of those calls to a remote server
Send the phone’s GPS coordinates to a remote server
Upload a copy of every picture taken with the phone’s camera to a remote server
Hide from the user’s view
These are robust, highly advanced features that require extensive, detailed knowledge of the Android OS. Typically, malware of this type is used by nation-state hackers with deep pockets, or by well-heeled networks of cybercriminals. At this point, there’s no clear indication which category Triout’s creators fall into.
The malware strain has been found masquerading as a legitimate app, but the team has been unable to trace it back to its source of origin. At this point, there’s no clear indication where it’s coming from. The first sample was uploaded to VirusTotal from Russia, but subsequent samples were uploaded from an Israeli IP address.
The researchers note that despite its advanced feature set, the group responsible appears to have made a mistake:
“What is striking…is that it’s completely obfuscated, meaning that simply by unpacking the cloned app’s .apk file, full access to the source code becomes available….this could suggest that the Triout framework may be a work-in-progress, with developers testing features and compatibility with devices.”
President & CEO
I hope you enjoyed this article. My mission is to take your stress away from dealing with IT problems. Call (252) 565-1235 or send me a message at our contact us page if you have a question, comment or want help.
Earlier this year, Microsoft announced that it had entered into a partnership with Open Whisper Systems, the makers of the Signal app. The purpose of the partnership was to bring Signal’s open source, end-to-end encryption protocol to Skype.
Google has introduced a new Gmail feature called “Confidential Mode,” which seeks to make sending and receiving important or sensitive emails more secure. Unfortunately, it may have inadvertently created as many problems as it solves.
Do you use Photoshop? Does anyone who works for you use it? If so, you’ll want to apply the latest security patch immediately.
Intel has had a tough time of things so far this year. The most recent trouble stems from yet another newly discovered security flaw in the company’s processors, bearing the inelegant name of “L1 Terminal Fault,” or “Foreshadow” by those who have discovered it.
Nothing bad could possibly happen to your company’s network if the only piece of information the hackers have is your fax number, right?
How seriously does the average consumer take data theft? It’s an interesting (and fair) question, and one that Radware recently attempted to answer when the company sent out surveys. They contacted more than three thousand people to conduct its recent survey titled “Consumer Sentiments: Cybersecurity, Personal Data and the Impact on Customer Loyalty.”
These days, we expect giant corporations, government agencies and medical facilities to be the targets of hackers. However, golf is something new.
If you’re a Reddit user, it’s time to change your password. According to the company, they recently discovered evidence of a hack that exposed all company data from the site’s launch (2005) to 2007, including user emails and account credentials.