Google messaging service hacked, sends malware to Android users – Kaspersky

August 13, 2013 

Russia’s Kaspersky Lab has found a backdoor in Google Cloud Messaging service (GCM) used by hackers to steal Android users’ data and force them to send paid messages. The scheme is only stoppable by Google, as it relies on stolen IDs of GCM developers.

The Russian computer security firm on Tuesday said it had notified Google of a security breach in its service, which enabled the hackers to register Trojan and Backdoor malware in the network of the internet giant. 
“Such tactics rule out the possibility to block access to master server directly on the infected phone,” the Kaspersky team warned in a statement on its website. 
Thus, if an Android user is lured into installing some applications containing the malware, he is doomed to have his money or private data stolen – unless Google intervenes. 
Blocking the accounts of GCM developers, who’s virtual IDs have been compromised and used for Trojan’s registration, is the only way to stop the malicious algorithm, Kasperky Lab explained. 
The anti-virus developers have been warning that over the past year cybercriminals have become increasingly active in targeting tablets and smartphones – especially Android devices – with malicious software. 
The software may often be disguised as an installation package of a popular mobile application, such as a game or a browser. 
Kaspersky Lab expert Roman Unuchek said a typical example of such a trap for Android users – dubbed Trojan-SMS.AndroidOS.OpFake.a – has already been detected in 97 countries. The firm has come across over 1 million different installation packages containing the malware. 

This picture posted on Cuelogic Blog by Sagar Tambe shows how data providers can use Google Cloud Messaging (GCM) to send notifications to Android devices where their applications are installed, as well as silently synchronize data.

This picture posted on Cuelogic Blog by Sagar Tambe shows how data providers can use Google Cloud Messaging (GCM) to send notifications to Android devices where their applications are installed, as well as silently synchronize data.

Once installed, this Trojan lets the hackers steal or delete phone contacts or messages of the Android device owner, send short messages or ads linking to malware to his friends – and, ultimately, secretly send “premium” texts to certain numbers, for which the owner will have to pay a tidy sum. 
Another Trojan of the kind, which particularly targets Russia and the CIS countries, has been discovered by Kaspersky Lab a staggering 4.8 million times.

The screenshot shows a warning message that may appear on some Android devices if a user tries to install a malware referred to as Trojan-SMS.AndroidOS.OpFake.a by Kaspersky Lab. In this case, the malware appears to be disguised as an update package of Opera Mobile browser.

The screenshot shows a warning message that may appear on some Android devices if a user tries to install a malware referred to as Trojan-SMS.AndroidOS.OpFake.a by Kaspersky Lab. In this case, the malware appears to be disguised as an update package of Opera Mobile browser.

Both programs register within the GCM service, Unuchek notes. In some cases, Google Play Store – the resource monopolizing the distribution of all Android apps – may even warn the users of a potential danger before the installation, but many choose to ignore the warning message. 
According to data published on Kaspersky Lab’s website, up to 12,000 new mobile threats in a form of malware are discovered monthly by the computer security firm. 99% of all such malware is said to have targeted the Android platform last year. 

http://rt.com/news/google-messaging-hacked-malware-451/

Views: 152

Comment

You need to be a member of United Truth Seekers to add comments!

Join United Truth Seekers

Rocks2Rings

Help Pay The Rent. "United Truth Seekers" Is an informative Social Network exposing the truth that the mainstream media ignores. The truth will set you free!

This website is brought to you exclusively by member donations. Click Above, Thank you.

About

Eastern Standard Time

We’re “mining” cryptocurrency with our phones! I’m looking for people who want to join me and my friends and figured this would be a good way to get the word out. 🚀 I am sending you 1π! Pi is a new digital currency developed by Stanford PhDs, with over 10 million members worldwide. To claim your Pi, follow this link https://minepi.com/PAMUTS and use my username PAMUTS as your invitation code.

Download this and you will get cryptocurrency mining on your phone, and remember every 24 hours to open the app and touch the Pi button that way it automatically starts mining for you, you basically have to do nothing after that just let it Stay in the background mining cryptocurrency for you until one day it’s worth money for enough to cash it out!

~~~~~~~~~~~~~~~~~~
~~~~~~~~~~~~~~~~~~

DEMAND THE TRUTH!

"It was the poverty caused by the bad influence of the
 English Bankers on the Parliament which has caused in the colonies hatred of the English and...the Revolutionary War."
– Benjamin Franklin

"Guard with jealous attention the public liberty. Suspect every one who approaches that jewel. Unfortunately, nothing will preserve it but downright force. Whenever you give up that force, you are ruined."

Patrick Henry
June 26, 1788

 

© 2025   Created by Pam Vredenburg.   Powered by

Badges  |  Report an Issue  |  Terms of Service

google-site-verification: google4dc7c778a884c7b9.html