Android App Contains Windows Worm

Anh Le

Sec freak
29/06/2013
0
10 bài viết
Android App Contains Windows Worm
When developers are unknowingly of confidence they open a doorway to threats opposite their business and users. We are not only articulate about exploitable vulnerabilities in their code, yet about something most some-more apparent than that.

Here is a extraordinary box of an Android focus on Google Play that contains some traces of malware, yet poses no confidence risk for Android devices. This same application, however, is dangerous to other mobile and PC platforms.

Embedded inside this APK file, McAfee Labs found a Windows worm (Generic Malware.og!ats) that replicates itself around network shares. There is no auto-execution choice for a malware on a Windows PC, yet a user could run a antagonistic focus by opening a APK (in Zip format) and using a program. This PC malware resides in any Android device that has commissioned a “KFC WOW@25 Menu� app.

e3b11_Windows-Malware-on-Google-Play.png
When a legitimate Android focus contains a antagonistic record such as this one (for a Windows PC), it is expected this has occurred due to slight on a partial of a developer. This slight can be as elementary as not securing a growth environment.

The developer of this app presumably had old-fashioned antimalware program on a computer, so but realizing that a mechanism was infected, a source formula office contained a duplicate of a worm. From there a worm was packaged, signed, and deployed on Google Play, with a developer totally unknowingly of a file.
e3b11_code_Windows-Malware-on-Google-Play.png

Windows malware executable record is sealed by a developer of a Android app.

Even yet this might seem like a low risk and a focus has been private from Google Play, it still poses a risk to consumers.

Another engaging and identical box comes in a form of an putrescent HTML record containing antagonistic JavaScript code. This HTML exists within a preinstalled email focus benefaction on many Android inscription devices.

d9733_html_Windows-Malware-on-Google-Play.png
Email focus in a inscription “Joy Tab Gem10312BK.�
We trust malware using on a developer’s PC is able of infecting all HTML files with this JavaScript, including any prepared to be finished inside an Android app!

The doctrine for developers is clear. It is critical to remember a essentials for a secure computer: say updated antimalware software, generally if we intend to discharge calm to other users.

The cross-platform McAfee antimalware apartment protects opposite these forms of threats and alerts business and developers to forestall infections. McAfee detects these Android applications on Windows platforms.

Link:
http://www.itsecuresite.com/seclabs/mcafee/android-app-contains-windows-worm.html
 
Chỉnh sửa lần cuối bởi người điều hành:
Mời các bạn tham gia Group WhiteHat để thảo luận và cập nhật tin tức an ninh mạng hàng ngày.
Lưu ý từ WhiteHat: Kiến thức an ninh mạng để phòng chống, không làm điều xấu. Luật pháp liên quan
Bài viết hay quá, cám ơn bạn nhiều nha!
 
Mời các bạn tham gia Group WhiteHat để thảo luận và cập nhật tin tức an ninh mạng hàng ngày.
Lưu ý từ WhiteHat: Kiến thức an ninh mạng để phòng chống, không làm điều xấu. Luật pháp liên quan
Comment
Bạn có thể cho thông tin cụ thể hơn không
 
Mời các bạn tham gia Group WhiteHat để thảo luận và cập nhật tin tức an ninh mạng hàng ngày.
Lưu ý từ WhiteHat: Kiến thức an ninh mạng để phòng chống, không làm điều xấu. Luật pháp liên quan
Comment
Bên trên