Cybercriminals have rolled out a new malicious Android application that wraps different varieties of banking fraud trick into a single piece of advanced mobile malware.
GOOGLE SERVICE FRAMEWORK - APPLICATION OR MALWARE?
Security researchers at the security firm FireEye have came across a malicious Android application that binds together the latest and older hijacking techniques. The malicious Android app combines private data theft, banking credential theft and spoofing, and remote access into a single unit, where traditional malware has had only one such capability included in it.
Researchers dubbed the malware as HijackRAT, a banking trojan that comes loaded with a malicious Android application which disguises itself as “Google Service Framework,” first and the most advanced Android malware sample of its kind ever discovered, combining all the three malicious activities together.
MALWARE FEATURES
By giving the remote control of the infected device to hackers, the creepy malware application:
steals and sends SMS messages
steals contacts
initiates malicious app updates
scans for legitimate banking apps installed on the victim’s mobile phone and replace them with fakes utilities
attempts to disable any mobile security software or antivirus solution that might be installed on a compromised Android device

IS MOBILE ANTIVIRUS NEEDED? GOOGLE SAYS “NO”
Despite strict warnings from security companies, Google’s head of Android security says the majority of Android device users do not need to install any anti-virus solution and other security applications to protect their devices.
GOOGLE SERVICE FRAMEWORK - APPLICATION OR MALWARE?
Security researchers at the security firm FireEye have came across a malicious Android application that binds together the latest and older hijacking techniques. The malicious Android app combines private data theft, banking credential theft and spoofing, and remote access into a single unit, where traditional malware has had only one such capability included in it.
Researchers dubbed the malware as HijackRAT, a banking trojan that comes loaded with a malicious Android application which disguises itself as “Google Service Framework,” first and the most advanced Android malware sample of its kind ever discovered, combining all the three malicious activities together.
MALWARE FEATURES
By giving the remote control of the infected device to hackers, the creepy malware application:
steals and sends SMS messages
steals contacts
initiates malicious app updates
scans for legitimate banking apps installed on the victim’s mobile phone and replace them with fakes utilities
attempts to disable any mobile security software or antivirus solution that might be installed on a compromised Android device
IS MOBILE ANTIVIRUS NEEDED? GOOGLE SAYS “NO”
Despite strict warnings from security companies, Google’s head of Android security says the majority of Android device users do not need to install any anti-virus solution and other security applications to protect their devices.
Comments
Post a Comment