时间:2025-10-08 04:01:15 来源:网络整理编辑:焦點
A new strain of Android malware has infected 25 million devices and modified legitimate apps with a
A new strain of Android malware has infected 25 million devices and modified legitimate apps with a malicious ads module, according to a report by the security company Check Point.
It's believed the malware originated from a Chinese internet company that helps Chinese Android developers publish and promote their apps in foreign markets. The malware was disguised as Google-related updaters and "vending modules," which hid its own app icons and automatically replaced already-installed legitimate apps with its own version without the user knowing. This lead the researchers to name the malware "Agent Smith" because its behavior is similar to the character in the film The Matrixof the same name.
The malware first appeared in popular third-party app store 9Apps and targeted mostly Indian, Pakistani and Bangladeshi users. However, of the 25 million affected devices, 303,000 infections were detected in the US, and 137,000 in the UK.
Apps that were modified include WhatsApp, Opera Mini, Flipkart, as well as software from Lenovo and Swiftkey. The malware detected which apps were installed, patched them with a malicious ads modules, and then re-installed them on the device. For the user, it simply looks like the app is being updated as expected. Once the update is complete, the owner of the malware can then profit from the newly included ads.
Check Point believes the same malware could also be used for more malicious purposes such as credit card theft, with the company's report stating, "due to [the malware's] ability to hide its icon from the launcher and impersonates any popular existing apps on a device, there are endless possibilities for this sort of malware to harm a user's device."
The security firm says they submitted data to Google and law enforcement agencies, and as of publishing no malicious apps remain on the Play Store. Nevertheless, the malware managed to survive for as long as it did because, despite the original vulnerability Agent Smith was based on being patched in Android years ago, developers did not sufficiently update their applications.
Malware like this, "requires attention and action from system developers, device manufacturers, app developers, and users, so that vulnerability fixes are patched, distributed, adopted and installed in time," Check Point says.
TopicsAndroidCybersecurity
Daughter gives her 1002025-10-08 03:58
河北隊國腳尹鴻博將加盟中超新軍梅州客家2025-10-08 03:26
滬媒 :有些中國球員並不職業 金泰延樸成曾被拍到吞雲吐霧2025-10-08 03:16
武磊:為進球開心更為勝利開心 希望爭取更高名次2025-10-08 02:49
Over 82,000 evacuate as Blue Cut fire rapidly spreads in southern California2025-10-08 02:47
意媒 :姆巴佩與皇馬達協議 1億歐簽字費+5000萬年薪2025-10-08 02:41
蘇寧欠薪老板買限量超跑 越媒:中國足球笑話2025-10-08 01:49
格雷米奧官方宣布艾克森加盟 雙方簽約至2022年底2025-10-08 01:25
You can now play 'Solitaire' and 'Tic2025-10-08 01:22
亞冠獎金分配:小組賽贏1場5萬美元 冠軍400萬2025-10-08 01:15
This chart shows just how high Simone Biles can jump2025-10-08 03:52
艾克森轉會法律文件進展順利 或5月9日迎來巴乙聯賽首秀2025-10-08 03:30
反轉?廣州城3大主力或離隊 十年功勳老臣已隨滄州訓練2025-10-08 03:23
韓媒關注中國3名球員獲FIFA補償金 稱蘇寧楊家威或符合條件2025-10-08 02:49
Samsung Galaxy Note7 teardown reveals the magic behind the phone's iris scanner2025-10-08 02:40
2022年運動員保送推薦名單:金敬道被保送曲阜師範大學2025-10-08 01:54
安菲爾德錦鯉遊向聖西羅 奧裏吉即刻將簽下3+1合同2025-10-08 01:50
人民日報撰文稱讚武磊:因熱愛而堅持 為夢想去奮鬥2025-10-08 01:31
This company is hiring someone just to drink all day2025-10-08 01:18
武磊留洋全進球:絕平巴薩最高光 險複製上帝之手2025-10-08 01:16