The Register® — Biting the hand that feeds IT

Feeds

China's Android users warned of giant botnet

One million infected by MKD Trojan, and counting

Agentless Backup is Not a Myth

Security researchers in China are warning Android users to be on their guard after claiming to have discovered a million-strong botnet lurking on the platform.

The Android.Troj.mdk Trojan, first spotted by security firm Kingsoft Duba back in early 2011, is thought to be hidden in over 7,000 apps today, including many popular games such as Fishing Joy and Temple Run.

Once installed it allows the attacker to remotely control the victim’s smartphone for a variety of nefarious ends including harvesting contact and messaging details, generating nuisance adware, committing click fraud and downloading additional apps, Xinhua reported.

The million-node-plus botnet represents a small proportion of the 150 million users of Android phones in China today, but its relative success thus far points to a worrying lack of user awareness around the dangers of downloading apps from unofficial third party stores.

Aside from installing mobile security software, China is urging users to keep an eye on their call history and data traffic and to beware of any gaming apps seeking unusual permissions, such as access to SMS or other content, according to Xinhua.

China has been a hotbed of Android malware for several years. Last year the government was even forced to publicly reprimand operators China Mobile and China Telecom for persistently allowing security vulnerabilities in their application stores. ®

Steps to Take Before Choosing a Business Continuity Partner

Anonymous Coward

No. It's the Achilles Heel of installing dodgy software from nefarious sources on your devices [although granted, Android does make this easier to do than oher phone OSes]

12
0

This is why

Android should let users block any apps they want from network access.

I hear you say: "yes but poor developers need ads revenue to survive and apps need network access to fetch ads". Fine. Provide an API which allows apps to fetch ads in a [i]controlled[/i] manner.

I mean, this is not paranoia. There [i]are[/i] people out to get you. It is now standard on non-mobile machines to get a warning whenever a program accesses the web for the first time, giving you the choice to block it. I see no reason why it should not be the case for phones.

6
0

Re: This is why

> There [i]are[/i] people out to get you. It is now standard on non-mobile machines to get a warning whenever a program accesses the web for the first time, giving you the choice to block it

Oh sure, asking users to click yes to get the free stuff they want has really proven to be an effective security model. Numerous studies have shown that unless the box says "this app is going to steal your stuff" most users will just click yes because they think it is needed to play the game/app. The spread of the first Symbian worm required the user to click yes to:

* Do you wish to accept a bluetooth connection from an unknown device

* Do you wish to accept a file from <<device>

* Do you wish to execute file from <device>

No user in their right mind would click yes to any of one of those, but there were still some who clicked yes to all three. The average user does not have sufficient knowledge to make informed consent, so this method doesn't work.

3
0

More from The Register

 breaking news
Number of cops abusing Police National Computer access on the rise
Only a telegram from the Queen can get you off it
 breaking news
NSA PRISM snoop-gate: Won't someone think of the children, wails Apple
10,000 things probed, mostly about missing kids, Alzheimer patients, we're told
Flash flaw potentially makes every webcam or laptop a PEEPHOLE
But it's a Google problem - Chrome only, insists Adobe
Internet fraud still stings suckers
Australians twice as gullible as Americans
 breaking news
NSA PRISM-gate: Relax, GCHQ spooks 'keep us safe', says Cameron
Whatever they are up to, it's all above board, we're told
 breaking news
Yahoo! joins! rivals! in! PRISM! data! request! admission!
Keep calm and carry on using American tech firms, folks
PRISM snitch claims NSA hacked Chinese targets since 2009
Snowden suddenly looks safer in Hong Kong after revelations
 breaking news
US chief spook: Look, we only want to spy on 6.66 BEELLLION of you
Americans assured they are not in the NSA's sights
Speech-to-text drives motorists to distraction
Will talking to you mean I crash into that car up ahead, Siri?
DHS warns of vulns in hospital medical equipment
Has your doctor's anasthesia machine been hacked?