• This dangerous malware spoofs top Android apps to infect your dev

    From TechnologyDaily@1337:1/100 to All on Thu Jun 1 14:15:03 2023
    This dangerous malware spoofs top Android apps to infect your device - here's how to stay safe

    Date:
    Thu, 01 Jun 2023 13:02:58 +0000

    Description:
    Don't download the YouTube Android app from a third-party source or a
    Telegram group - it's almost definitely malware.

    FULL STORY ======================================================================

    Experts have warned of a new dangerous Android malware spoofing legitimate apps as it tries to steal sensitive information from victim endpoints, researchers are saying.

    Cybersecurity researchers from CloudSEK uncovered a variant known as DogeRAT (Remote Access Trojan). The malware has all sorts of capabilities, from accessing contacts and messages to exfiltrating banking credentials. It can also take over the compromised device, send spam, make payments, tweak files, and even use the devices camera.

    In order to infect the target, the malware pretends to be a legitimate app, such as a game, a productivity tool, or an entertainment app such as Netflix, or YouTube. Threat actors are advertising it through social media and messaging platforms, as such an .APK cant be found on the Google Play Store. Premium version

    The malwares creators are advertising the tool via Telegram, the researchers further stated, adding that the developers are offering a premium version
    that can also grab screenshots, steal images, work as a keylogger, and more. Its being sold for roughly $30, or 2,500 Indian Rupees. Besides the Telegram channel, the authors have also set up a GitHub page with the malware, a detailed explanation, and a video tutorial. Read more

    Over 50 Chinese apps banned in fresh crackdown by the Indian government


    Windows 11 now has much better protection against brute-force attacks



    These are the best ID theft protection tools right now

    We dont know how many devices are infected, but we do know that the malware wont work without the user giving it extensive permissions. Those include access to call logs, audio recording, reading SMS messages, media, and
    photos.

    To stay safe, CloudSEK reminds, users should always be mindful about the applications theyre downloading, and just because somethings on the Play Store, doesnt necessarily mean its clean and legitimate. Threat actors often manage to infiltrate Googles app repository, and sometimes add to the
    malwares legitimacy through inflated scores and purchased fake reviews. Furthermore, one should be extra careful when downloading an .apk from a third-party source. Check out the best firewalls right now



    ======================================================================
    Link to news story: https://www.techradar.com/news/this-dangerous-malware-spoofs-top-android-apps- to-infect-your-device-heres-how-to-stay-safe


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)