twitter

Showing posts with label Android Virus. Show all posts
Showing posts with label Android Virus. Show all posts
Android Phone Tips

Android Phone Tips
The latest malware targeting Android devices takes advantage of a jailbreak exploit to gain root-level access and executes instructions from a remote server. Researchers have uncovered the first malware using the "Gingerbreak" root exploit for Android 2.3, code-named "Gingerbread."

NC State researchers worked with mobile security vendor NetQin and discovered that Ginger Master wrapped malicious code around a jailbreak exploit for Android 2.3 devices. The information stolen includes the user identifier, SIM card number, telephone number, IMEI number, IMSI number screen resolution and local time, according to Vanja Svajcer, a principal virus researcher in SophosLabs. 

“The GingerMaster malware is repackaged into legitimate apps,” said Jiang. The applications masquerade as popular applications to encourage users to download it. It can download and install applications on its own without the user's permission, Jiang found. 

It's "exceptionally difficult" to gauge the impact of Android malware distributed outside the official Android market, Tim Armstrong, a malware researcher at Kaspersky Lab, told eWEEK. Users should avoid alternative Android Marketplaces unless they have "strong evidence" the applications are trustworthy, Svajcer recommended. GingerMaster may compromise Android 2.2 and earlier devices with some adjustments, Jiang said. Jiang's team also found other DroidKungFu variants in alternate Android application stores that used similar root exploits for earlier versions of Android.

Jiang named the malware "GingerMaster." Like most Android malware, GingerMaster hides inside legitimate Android applications that attackers have pirated, added malware to, then re-released onto popular download markets.

The malware waits for further instructions from the C&C server, which can tell jacked phones to download even more malware or other apps, said Jiang. In a post to the Sophos security blog Monday, Svajcer said he had downloaded the infected app from a Chinese-language site that caters to Android owners.

Although some infected apps have slipped into Google's official Android Market, a larger number are distributed through alternate sites, including several popular Chinese app marts. Last month, for instance, Jiang warned Android users of a then-new threat, called "HippoSMS," that his group had found on unauthorized Chinese app stores.

According to several antivirus vendors, the volume of Android malware has jumped this year. NC State's Jiang stressed that the newest Android malware is a significant threat, and urged smartphone owners to watch where they download apps and remain vigilant when an app requests a large number of permissions. 
By. Android Phone Tips




 
»»  read more
Tuesday, August 23, 2011 | 0 comments | Labels: ,
Android Phone Tips

Android Phone Tips
Google's Android platform has seen growth that exceeds even the wildest of expectations. Android now holds 48 percent of global market share, while the iPhone has reached second place with 19 percent. Of the 56 countries examined, Android was the leader in 35. Android exploded from 33.3 percent share in Q4 of last year to 48 percent in Q2. In the last six months, iOS has grown from roughly 16 percent to 19 percent, a 19 percent growth. Android has seen a 379 percent increase in sales when compared to just one year ago, and Android and iOS, when tallied together, hold more than two-thirds of the market.

Google’sAndroid Market, as we’ve noted before, is a different beast than Apple’s App Store from both a consumer and a developer perspective.  The company found that Android Market is paced by a number of very prolific app makers, and it also sees more updates per app than the App Store. According to Mobilewalla, which pulled data from May, Android developers that have created more than 100 apps contributed 53 percent of the total apps in Android Market. That’s more than twice the rate in the App Store, where developers with more than 100 apps represented 23 percent of all apps.

That suggests that while Android Market is growing fast, it’s being driven by a smaller set of developers that are pushing out a whole lot of apps, which could be contributing to Android’s reputation for having a lot of low quality apps, copy-cat programs and simple wallpaper apps, though Mobilewalla said wallpaper apps are a relatively small portion of all apps.

It could be that Android’s low barrier for uploading apps to the Market makes it easy for devs to flood the store with a lot of apps. Mobilewalla also found that apps on Android saw an average of 0.8 updates per app compared to 0.3 updates per app on iOS. That suggests Android developers are changing their apps more than twice as often as iOS developers. “The only way we can explain that is Android developers are just doing more,” said Datta. 

Android developers don’t have to submit each update for approval by Google, so it encourages fast iterations and continual improvements. Android fragmentation may also be an issue here. Mobilewalla also found that usage of apps on Android is concentrated on the top apps, while iOS users are more likely to try more apps. The company said that among the top 30 apps, Android Market apps had between 11,000 and 20,000 ratings compared to about 6,000 ratings for the top 30 apps in the Apple App Store. 

But when you consider the next 210 apps beyond the top 30, Android’s average ratings per app plummets to just a few hundred per app while Apple’s ratings counts remain between 2,000 and 6,000. Android Market got off to a later start than App Store, but it’s growing fast (250,000 apps compared to 425,000 in the App Store). 
By. Android Phone Tips

 
»»  read more
Wednesday, August 17, 2011 | 0 comments | Labels: ,
Android Phone Tips

Android Phone Tips
Symantec announced on Thursday the release of its Norton Mobile Security app for Android devices, giving mobile users a free lite version of the company’s popular security suite. The new app called Norton Mobile Security LITE for Android has several antitheft and antimalware features required for protection, but is only a free and stripped version of the more robust Norton Security Suite.

The mobile app allows Android users to remotely lock lost or stolen phones via SMS, scan files and updates for malware, and run Norton’s LiveUpdate in the background for automatic downloads and installations of security updates.

A free Android app that automatically scans downloaded apps and app updates for potential threats, detects and blocks phishing websites or other compromised sites, and "eliminates mobile threats before they can infect your phone," according to its description in the Android app market. Norton Mobile Security Lite is currently available for download in the Android Market. 

To further protect its users against cybercrime and infected Android apps, the anti-virus app includes several aftermarket features that allow users to lock their smartphones via text message, remotely locate stolen or misplaced phones and remotely wipe the contents of their phone. Along with Symantec, AT&T and security firm Juniper Networks are getting into the mobile security game. 

Security firm Symantec is only too aware of this and has released a beta version of Norton Mobile Security that includes not only virus protection, but also other security features such as location locating and remote wiping. Users may resent having security software installed, but it could prove invaluable if you manage to mislay your mobile.
By. Android Phone Tips



 
»»  read more
Sunday, August 14, 2011 | 0 comments | Labels: ,
Android Phone Tips

Android Phone Tips
The app is called Anti, short for Android NetworkToolkit. With Anti, a user can infiltrate Windows machines, devices running an unspecified older version of Android and yes, even iPhones. Anti will debut at the Android Market next week as a free app that can be upgraded for $10 (USD).

I’m sure you’re wondering why Google would approve such an app. The answer lies in zImperium’s trade – security.  Called Android Network Toolkit, or Anti for short, the app basically allows anyone using it to gain access to other devices such as Windows computers, Android phones and even iOS devices as well.

If you’re wondering how can such an app be legal, it’s because the company behind it, Zimperium, specializes in security and the app was designed to be used by companies or individuals who wanted to test out the security on their networks, machines and even software which could be outdated, thus causing security vulnerabilities.

In a note left in the app by Zimperium, “Please remember, with great power comes great responsibility. The AndroidNetwork Toolkit app could be a script-kiddies’ dream come true. The app, released by Zimperium, has functionality the includes the ability to spy on a machine, take remote screenshots, and eject the CD tray. Well, Zimperium is actually in the security business and the app is intended for use in sniffing out security holes. 
By. Android Phone Tips


 
»»  read more
Thursday, August 11, 2011 | 0 comments | Labels: ,
Android Phone Tips

Android Phone Tips
Android malware may be transmitting personal user data to unauthorized computers, indicating increasing security vulnerabilities in the OS and drawing criticism and concern, especially as Android devices grow in business and government usage.

Researchers at Calif.-based security firm Dasient looked at 10,000 applications for Android smartphones in a random sampling, and discovered more than eight percent of the apps transmit personal user data to unauthorized computers.

Called “drive-By downloads,” this category of malware infects a smartphone when its user simply visits a malicious site. The implications of these weaknesses are potentially alarming, especially as smartphone usage grows into businesses. Several businesses, like Deutsche Bank, are moving away from the BlackBerry devices and towards employee’s personal smartphones and devices. But incidents of increasing malware on Google’s OS may have a negative impact, causing the Android OS to lose out in the corporate game.

Malware is becoming increasingly problematic for smartphone owners using the Android operating system. A security firm released unsettling information on growth of mobile malware. A security firm named Dasient studied 10,000 applications for Android smartphones and found that more than 8 percent of the applications are transmitting personal user data to unauthorized computers. This form of malware is designed to take control of a user’s smartphone. If a user pays for SMS messages rather than an unlimited plan, it can easily rack up charges without any interaction from the user besides downloading the application.

It’s also possible that users are unknowingly installing malware when visiting a site. Beyond personal user data, the malware often leaks the IMEI number (specific to the phone) and the IMSI number (specific to the subscriber). 

While we did not observe any outwardly malicious text messages in our sample of 10K apps from the Android Market, we did observe 11 applications that sent text messages that could be considered spam-like. More than 800 Android apps "leaked private information, such as IMEI and IMSIs," the firm said. 

There are now more than 235,000 programs in the Android Market, according to AppBrain, a website for discovering Android apps. The apps studied by Dasient "were chosen at random from 30 different categories of apps in the Android Market," the firm said in its report. 

The site's "low quality app detection filter detects automatically which apps are unlikely to be useful," AppBrain notes. "Google seems to remove apps from the market roughly once a quarter, in which case the total number of available Android apps goes down. The removed apps are almost always classified by our system as low quality apps."
By. Android Phone Tips



»»  read more
Friday, July 22, 2011 | 0 comments | Labels: , ,
Android Phone Tips

Android Phone Tips
Google has yet again removed some malware applications from its Android Marketplace. This spyware does not attempt to root Android phones but instead is designed to be stealthy by running the payload under the radar. 

The apps managed to survive in the market for about two months because of their stealthy nature and their use of names that used Angry Birds' popularity. Some of the names were - Angry Birds RioUnlocker v1.0, Angry Birds Multi User v1.00 or Angry Birds Cheater Trainer Helper V2.0. Google had remotely removed some apps in early March also. 

To all the Angry Birds fans playing the extremely popular game on your Android phone, beware of any Angry Birdsapplication add-ons. Google has removed at least 10 apps from the Android Market which contain malicious code. The malware was found in apps pretending to be cheats or add-ons for Angry Birds.

The problem with Android apps, unlike with iPhone apps, is that the Android Market doesn’t vet its apps. Xuxian Jiang, an assistant professor of computer science at North Carolina State University, found the malicious apps last week. Some of those apps were infected with the spyware program Plankton. Webroot analysts Andrew Brandt and Amanda Orozco found Plankton was zeroing in on Angry Birds

Some of the apps in question were Angry Birds Rio Unlocker v1.0, Angry Birds Multi User v1.00 and Angry Birds Cheater Trainer Helper V2.0. The apps actually install additional code onto your phone which gives remote access and control of the handset to whoever created the malicious apps. Back in March, Google removed about 60 apps from the Android Market for malware concerns. 

A number of the identified infections contained the Plankton spyware program, which uploads users' browsing details to a remote server without their permission. The infections were first observed by Xuxian Jiang, an assistant professor of computer science at North Carolina State University. Last month saw Angry Birds reach 200 million downloads globally.
By. Android Phone Tips




»»  read more
Wednesday, June 15, 2011 | 0 comments | Labels: , , ,
Android Phone Tips

Android Phone Tips
Some users are shocked that Google can remove stuff from your Android phone remotely. I'm more alarmed at the ridiculous ease with which malicious coders can create Trojans for Android. At last week's Next@Norton event, Symantec researchers presented a dazzling array of information about the current state of mobile security and the mobile malware landscape. 

Here are the five simple steps Chien demonstrated:

One. Start by downloading a free app. You can choose any app at all, but of course you'll want to pick something that will draw plenty of downloads.

Two. The language compilers that create applications on your PC take textual source code and convert it into assembly language that the CPU can read and process. It's a one-way translation; there's no way to go from the final executable file back to the source code. Androidapps are written in Java, though, and that means that you can decompile them back to the original source code using simple, easily-available tools. For the next step, decompile your target app.

Three. The third step is a little tricky. You'll need to obtain Java source code that does something nasty, like sending personal information from the device to a third party. For the demonstration, Chien used a known threat called Android.Geinimi.

Four. Adding the Trojan code is absurdly simple. You copy it into the folder containing the existing source code, make a small change in the manifest to run the Trojan code before the rest of the app, and edit the permissions to give the Trojanized app free access to the entire device. While you're at it, tweak the app's name. Chien added "FREE!" to the name for his demo.

Five. Compile the modified app and upload it to the market. You're done!

Of course, malicious apps don't last long in the Android Market. If you really want to spread a dangerous program, you're better off uploading it in China, where there is no official Android market. It's time to look into mobile security for your Android device. Google recently removed at least 10 applications from the Android Market, all of which contained malicious code disguised as add-ons to one of the most popular apps of all time.

Google suspended the questionable applications the same day, “pending further investigation.”Jiang found malicious programs other than Plankton in his research. Jiang says apps containing the virus were available on the Android Market for at least three months before Google pulled them.

Jiang found a similar application, DroidKungFu, circulating Chinese application markets before YZHCSMS made its way to the Android Market. For many app developers, the Android Market offers a freedom not found in other application retail outlets. Unlike Apple’s strict application review process, apps submitted to the Android Market are published almost instantaneously. 

Google’s lack of vetting applications lends the Market to security vulnerabilities like these. Going outside of the official Android Market for apps can be even riskier. Without Google’s moderation capabilities in these outside markets, users are more susceptible to downloading malicious apps.
By. Android Phone Tips



»»  read more
Tuesday, June 14, 2011 | 0 comments | Labels: ,
Android Phone Tips

Android Phone Tips
Android enthusiasts have long championed Google’s “open” philosophy towards the smartphone platform. The app in question, Android.Walkinwat, appears to be a free, pirated version of another app, “Walk and Text.” The real version is available for purchase in Google’s official Android Market for a low price ($1.54).
If you download the fake app (from unofficial markets for Android apps) and install it, it redirects you to the actual app on the Android marketplace — but in the background, it sends the following embarrassing message to your entire phonebook via SMS:

Hey,just downlaoded [sic] a pirated app off the internet, Walk and Text for Android. Whenever an app in clear violation of Google’s policies shows up in the Market — like, say, a piece of malware — Google’s Android engineers are often quick to quash it.

In order to install Amazon’s App Store on an Android device, you first must uncheck that permissions box. While there may be no immediate risks associated with downloading apps from Amazon’s App Store, it opens the door for users to allow other unofficial — and therefore riskier — apps to be installed on their devices, from other sources.

“Android users enabling sideloading doesn’t necessarily lead to piracy or installation of apps from unsafe sources,” says Alicia diVittorio, a spokesperson for Lookout Mobile Security. Essentially, there’s an inherent risk that comes with downloading apps for a device with an attitude of openness like the Android. 

With a slew of Android mobile devices streaming into the market, there is a lot of excitement around Google's Android OS and its market. Until recently the only way to access Android Market was to do so directly from an Android device using the Android market app on the device. But recently Google launched the Android Market website that allowed users to choose the apps and automatically download them to their Android devices over the air.

What the user has to do, is to go to the Android Market website  and sign in using his Google credentials and the application immediately retrieves information of Android devices registered in the person's name and also the data about market apps that have been already installed.

Sophos, a developer and vendor of security software and hardware, had recommended that Android Market's instant-download feature could open up Android devices to malicious downloads from attackers. There have been issues in the past with many malware apps being discovered in the Android market which were then banned by Google. Google doesn't minutely examine apps for approval and not only this, Android apps can also be obtained from a developer's website.

Once the app goes live, it is the Android market community which has the responsibility of flagging apps that do not abide by their policies. When an app is repeatedly flagged, it is being reviewed by Google and if it is found violating Google's policies, then it is banned. The app would present the new users with a limited list of banks that were complete with company logos. This led to suspicion about the app being a phishing app and was banned from Android Market.

A malware that was said to possess Botnet like capabilities, Geinimi was attached by hackers to legitimate apps like Monkey Jump 2, and the corrupted app was redistributed in the third-party Chinese Android app market. When users download the 'seemingly-legitimate' app the Trojan gets to work. Tap Snake, was a free gaming application available for the Android OS. Download apps only from trusted sources and avoid using third-party apps. Take into consideration, the developer of the particular app and check the ratings and user reviews. Also deploy a mobile security solution on devices to ensure that downloaded apps are not malicious.

The success of the Android platform is obvious from the number of applications, now over 300000, now available from the Android Market. Yesterday, we discovered a new malicious Android application which purports to be a non-existent version 1.3.7 of the application Walk and Text created by Incorporateapps. The application has been distributed on several forums and file sharing sites. 
By. Android Phone Tips





»»  read more
Friday, April 1, 2011 | 0 comments | Labels: ,
Android Phone Tips

Android Phone Tips
Google's latest update for its Android mobile OS appears to already have been subverted by hackers, according to the security vendor Symantec. Symantec found an application called the "Android Market Security Tool" that is a repackaged version of the legitimate update by the same name that removed the DroidDream malware from infected devices.

Google took the rare step last week of forcing the "Android Market Security Tool March 2011" onto devices to remove DroidDream. DroidDream could also download other code to a person's mobile phone. Google has patched the vulnerabilities in Android versions above 2.2.2, but many Android users do not have the latest version of the software.

Google released an application this week to remove malicious applications for Android phones that were found in Google’s Android Market. Researchers at Symantec Corp. now are reporting that they have found copies of the Android Market Security Tool that contain suspicious code.

“The technique employs nothing new,” said Joe Chen, director of engineering for Symantec Security Response. Malware writers routinely sail under false colors. The malware took advantage of known vulnerabilities which do not affect versions 2.2.2 or higher of the Android software. 

Google removed the malicious applications from Android Market March 1, and this week released the security tool, which was pushed to affected users. The Android.Rootcager malware was found in versions of the security tool on an unregulated third-party Chinese marketplace. Thanks Android team!!” to “Why are people thanking Android/Google? 

Following the DroidDream Android malware scare, Google announced that they had removed the malicious applications from the Android Market, suspended the developer accounts, and contacted law enforcement, in addition to using its remote application removal feature (Android's so-called "kill switch") on affected phones.
Google automatically pushed out "Android Market Security Tool March 2011," and notified users via e-mail about the installation and removal of apps, whereas this "trojanized" version asks users to install it. 

In total, 58 malicious apps were found in the Android Market and downloaded 260,000 times. The attacks affected phones running on versions before 2.2.2.  Mobile users who search for [poison control], [suicide], and common emergency numbers already receive a result showing the relevant emergency phone number. 
By. Android Phone Tips



»»  read more
Tuesday, March 22, 2011 | 0 comments | Labels: , ,
Android Phone Tips

Android Phone Tips
If you've read much news lately, you know it's that time of year again -- time for the semiannual Android malware freakout show. You know what I'm talking about: Some company, usually one that happens to sell a virus protection program for Android, comes out with a slew of blogs and press releases warning us of a super-duper-scary virus monster just waiting to attack vulnerable Android phones. 

Our latest Android malware episode started a few days ago when Lookout, a company that -- wait for it -- sells a virus protection program for Android, posted a blog and sent out a press release warning of a newly found threat. Called "DroidDream," the threat lurked in about 50 apps within the Android Market, Lookout said. 

If installed on your phone, those apps could potentially let an attacker install additional programs and ultimately access some of your device's data. Long story short, Google axed the infected apps from the Market, remotely removed any traces of the programs from users' phones, and released a patch that'd prevent the apps from doing any more harm. 

There's even (gasp!) porn. We're used to this when surfing the Web, right? We evaluate programs before we download them. If something seems shady, we click away. Google removed 21 popular free apps from the Android Market that secretly stole available data on users' smart phones and allowed for more malware to be unknowingly downloaded.

Google reported that at least 50,000 Android users downloaded the malware-laden apps and decided to yank the list of apps to protect other consumers. The apps are designed to obtain root access to mobile devices and available data, such as mobile provider and user IDs, reports AndroidPolice.com. 

The Android watchdog site says the worst part is that the apps make it possible to download more malware without the users knowledge and who knows what kind of personal information and data such bad software could extract and exploit. The list of bad Android apps include: Falling Down, Super Guitar Solo, Chess, Photo Editor, Super History Eraser, Hot Sexy Videos, Falling Ball Dodge, Dice Roller, Funny Paint and Spider Man.
By. Android Phone Tips


»»  read more
Thursday, March 10, 2011 | 0 comments | Labels: , ,
Android Phone Tips - 6BG6AAKAEA5W
Android Phone Tips
Malware or Android virus is often irritating, because in addition to damaging the operating system or applications android we also create files or data that we can be stolen without us. Therefore we have a antivirus and also tips for android we stay safe from Android viruses. The following are tips that we collect from pc-world and hopefully useful for all of us especially android users. Following are five quick tips to help you keep your Android handset free of malware :
  1. Always research the publisher of the app. What other apps does it offer? Do any of them look a bit shady? If so, you should probably stay away.
  2. Read online reviews. Android Market reviews may not always be truthful. Check around to see what reputable Websites are saying about the app before you hit the download button.
  3. Always check app permissions. Whenever you download or update an app, you get a list of permissions for it. An alarm clock app, for instance, probably shouldn't need to look through your contacts. The general rule of thumb: If an app is asking for more than what it needs to do its job, you should skip it.
  4. Avoid directly installing Android Package Files (APKs). When Angry Birds first came to Android, you could get it only through a third party. This is called "sideloading," or installing apps using an .APK file. Although Angry Birds wasn't malware, in general it is highly advisable not to download and install .APK files that you randomly come across. Most of the time you won't know what the file contains until you install it--and by then it's too late.
  5. Put a malware and antivirus scanner on your phone. Although many people still think that antivirus scanners on phones are useless, maybe outbreaks such as this one will change minds. Several different big-name security companies already offer mobile-security options, many of them free. I myself had downloaded "Spider Man," which is on a bad-apps list. My Lookout software identified it as a Trojan horse.
Of course if everything is run by you that the above tips will definitely help a lot to prevent android least we're not attacked or at least minimize the Android virus in our android.
By. Android Phone Tips
»»  read more
Tuesday, March 8, 2011 | 0 comments | Labels: , ,
Android Phone Tips

Android Phone Tips
The news that Google is remotely removing 58 malicious applications from Android devices shows that opening up the supply of software to a variety of sources has its risks, including malware similar to what has been infecting Windows for years.  

The fact that malware isappearing on Android devices shouldn’t be a surprise to anyone. Android devices also give you the ability to download apps from third party sources–places that aren’t part of the Android Market. I’m sure there are many out there who will suggest that this makes Android devices less useful in the enterprise than, say, Apple or Blackberry devices. 

The freedom to load applications from anywhere gives Android device significant flexibility that you don’t get with other devices. There’s already a variant of the Zeus Trojan, named Zitmo, attacking Blackberry devices that apparently comes from visiting infected Web sites or from infected e-mails. This works just as effectively regardless of what brand of mobile device you’re running.  

In addition, the problem is worse with mobile devices because security software hasn’t been a priority for mobile users. This means that malware can invade your mobile device and you may never know. I still use my BlackBerry to do that, if only because BlackBerry malware is much more rare than Windows malware.

With Android devices you have a larger number of infection vectors than you do with Apple or RIM devices, but that doesn’t mean that those devices are free from any risk, because they’re not. Google's response to a bout of Trojan-horse applications targeting its Android operating system shows how much and how little power it exerts over that platform. 

The key part of Google's latest reaction, announced in a blog post Saturday night by Android security head Rich Cannings, is the remote removal from users' phones of applications identified as malware. These rogue applications were offered through Google's Android Market under such sketchy names as "Hilton Sex Sound" but also more-serious monikers such "Scientific Calculator.

" Google will also send a software update called "Android Market Security Tool March 2011" to infected phones over the next day or two that will close the security vulnerabilities exploited by this malware. You're better off inspecting a new app's critiques in the Web version of the Market that Google introduced last month.) 

I've heard similar thoughts from Android developers who like not having to wonder if each new release--and each patch to an existing release--will get held up in app store review limbo. Although the current version of Android, 2.3, doesn't have the vulnerability exploited by this malware, most Android phones don't run it.
And Google can't make them offer updates to 2.3. Others, such as Vaughan-Nichols, advise getting anti-virus software for the phone. But no matter what, Google needs to improve its management of its Market.

Given that the malware was designed to download additional malicious software, it's not immediately clear whether affected devices lost sensitive information as a result of this secondary malware. Larimer advises resetting affected phones to their factory state. Google is distributing a specific piece of security software to affected users, the Android Market Security Tool. Cannings says that Google is working on a number of additional security measures to make Android Market more secure and is working with partners to improve software security. 
By. Android Phone Tips


»»  read more
Monday, March 7, 2011 | 0 comments | Labels: , ,
Android Phone Tips

Android Phone Tips
I prefer Google’s Android over Apple’s iOS for smartphones. On Saturday, Google’s Rich Cannings, the Android Security Lead, announced that:

1. We removed the malicious applications from Android Market, suspended the associated developer accounts, and contacted law enforcement about the attack.
2. We are remotely removing the malicious applications from affected devices. This remote application removal feature is one of many security controls the Android team can use to help protect users from malicious applications.
3. We are pushing an Android Market security update to all affected devices that undoes the exploits to prevent the attacker(s) from accessing any more information from affected devices.

If your device has been affected, you will receive an email from android-market-support@google.com over the next 72 hours. You will also receive a notification on your device that “Android Market Security Tool March 2011″ has been installed. At least Google will be telling users what’s going on, so that’s something anyway.

This malware only worked on versions of Android that were 2.2.2 or lower. So, how about making almost every Android user in the world happy—not to mention developers-and get the phone original equipment manufacturers (OEMs)–to update all their Android devices to 2.3, the latest major version? There’s a host of Android A/V programs on their way. 

Only devices running an Android version earlier than version 2.2.2 were susceptible to the rogue apps, which took advantage of known vulnerabilities, the Internet giant reported late last night in the Google Mobile blog. Fifty-eight malicious apps were identified and removed Tuesday but not before they were downloaded to about 260,000 devices. 

Google said it would use a kill switch to remotely remove the apps from users' devices and push an Android security update to affected users to repair the damage done by the apps. Google Android users need to be wary of rogue apps that try to steal personal data from their handset, says Internet security firm Bullguard. Philip Dall recommends that Android users consider two basic security measures to stay safe.

There are many mobile security products available including offerings from BullGuard, AVG and Trend Micro. Gartner recently revealed Google Android is now the second largest mobile phone operating system, with 67.2 million handsets sold last year.
By. Android Phone Tips



»»  read more
Sunday, March 6, 2011 | 0 comments | Labels: , ,
Android Phone Tips

Android Phone Tips
Google has been forced to withdraw more than 50 virus-infected apps from the official Android Market. Google Android is an open-source software stack for mobile devices that includes an operating system, middleware and key applications.

DroidDream fires sensitive data, such as a phone's unique ID number, to a remote server. If it hasn't the program bypasses security controls and hands its creator access to the handset. Lompolo discovered that the application was a carbon-copy of the original, however it had a name change and virus code added to is. more than 50 applications available via the official Android Marketplace have been found to contain a virus.

The apps, according to analysts, may have been downloaded up to 200,000 times before they were found.
The apps were not newly developed ones. The malicious apps were just a bunch of existing applications that had been repackaged to include the virus code. Google has reportedly removed the apps from the Android Marketplace.

The virus in the apps, known as DroidDream, would send sensitive data such as a phone’s unique ID number, to a remote server once it had been installed. Before installing itself, it first checks to see if a phone has already been infected or not. If not, it will then install itself and use known exploits to bypass security controls and give the virus creator access to the handset.

The latest version of the Android operating system, Gingerbread, is not vulnerable to the exploits DroidDream uses. Anyone who believed that their phone had been infected should get a new handset or re-install its operating system.

The attack was discovered when Reddit user Lompolo discovered that 21 legitimate apps had been download, infected and uploaded under another name. "Super Guitar Solo for example is originally Guitar Solo Lite. It was discovered after this that the rogue apps contained the DroidDream virus. With a suspected 200,000 downloads of the rogue apps downloaded, that's a lot of insecure handsets out there. 

Android 2.3 (Gingerbread) users are immune to the DroidDream virus, but as that's a minority of handsets, the majority of Android users are at risk. If you think that your handset could have been infected Android Police has a full list of infected apps. There's also no easy method to report suspect apps. 
By. Android Phone Tips


»»  read more
| 0 comments | Labels: ,