时间:2026-05-04 06:50:11 来源:网络整理编辑:焦點
A new strain of Android malware has infected 25 million devices and modified legitimate apps with a
A new strain of Android malware has infected 25 million devices and modified legitimate apps with a malicious ads module, according to a report by the security company Check Point.
It's believed the malware originated from a Chinese internet company that helps Chinese Android developers publish and promote their apps in foreign markets. The malware was disguised as Google-related updaters and "vending modules," which hid its own app icons and automatically replaced already-installed legitimate apps with its own version without the user knowing. This lead the researchers to name the malware "Agent Smith" because its behavior is similar to the character in the film The Matrixof the same name.
The malware first appeared in popular third-party app store 9Apps and targeted mostly Indian, Pakistani and Bangladeshi users. However, of the 25 million affected devices, 303,000 infections were detected in the US, and 137,000 in the UK.
Apps that were modified include WhatsApp, Opera Mini, Flipkart, as well as software from Lenovo and Swiftkey. The malware detected which apps were installed, patched them with a malicious ads modules, and then re-installed them on the device. For the user, it simply looks like the app is being updated as expected. Once the update is complete, the owner of the malware can then profit from the newly included ads.
Check Point believes the same malware could also be used for more malicious purposes such as credit card theft, with the company's report stating, "due to [the malware's] ability to hide its icon from the launcher and impersonates any popular existing apps on a device, there are endless possibilities for this sort of malware to harm a user's device."
The security firm says they submitted data to Google and law enforcement agencies, and as of publishing no malicious apps remain on the Play Store. Nevertheless, the malware managed to survive for as long as it did because, despite the original vulnerability Agent Smith was based on being patched in Android years ago, developers did not sufficiently update their applications.
Malware like this, "requires attention and action from system developers, device manufacturers, app developers, and users, so that vulnerability fixes are patched, distributed, adopted and installed in time," Check Point says.
TopicsAndroidCybersecurity
Richard Branson 'thought he was going to die' in bike accident2026-05-04 06:36
魔咒?巴薩三冠王後 梅西連續7年歐冠慘案或遭逆轉2026-05-04 06:26
曼城前瞻:藍月衝歐冠主場連勝神跡 丁丁迎裏程碑2026-05-04 06:23
津媒 :中超各隊收縮戰線 津門虎持續擴充顯示野心2026-05-04 06:20
Tributes flow after death of former Singapore president S.R. Nathan2026-05-04 06:12
媒體人 :欠外援的錢有人管 中國球員即使仲裁勝訴也無法兌現2026-05-04 05:54
費迪南德:有經紀人致電 要我別再批評某曼聯球員2026-05-04 05:24
本澤馬首球犯規在先?大巴黎暴怒 主席吼著要殺人2026-05-04 05:22
Fyvush Finkel, Emmy winner for 'Picket Fences,' dies at 932026-05-04 05:14
盡職!姆巴佩2戰皇馬雙響+造點 為金球投伯納烏?2026-05-04 05:08
The Weeknd teases new music in Instagram post2026-05-04 06:26
費迪南德:有經紀人致電 要我別再批評某曼聯球員2026-05-04 06:25
萊萬震驚於拜仁無人找他續約 若離隊曼聯準備報價2026-05-04 06:01
名記:姆巴佩有55%2026-05-04 05:57
Ivanka Trump's unpaid interns share cringeworthy financial advice2026-05-04 05:57
韓媒嘲諷U17國足剃光頭舉動 :實力弱 剃頭也沒用2026-05-04 05:40
姆巴佩成巴黎出局唯一遮羞布 今夏或圓滿伯納烏2026-05-04 05:39
費迪南德:有經紀人致電 要我別再批評某曼聯球員2026-05-04 04:33
'The Flying Bum' aircraft crashes during second test flight2026-05-04 04:28
巴黎名宿 :梅西內馬爾是兩個雇傭兵 要為出局負責2026-05-04 04:18