Wednesday, August 14, 2013

THE CREATURE AMONG US...


I'M NOT THE ONLY ONE RINGING THE BELL





I've said it before and I'll say it again: "There are way too many Android Apps filled with Malware". The creature among us would be the innocent Android app with malware, or the potential backdoor for malware to enter. When you get an App for free, or nearly free, there are advertisements within it so that the App maker can make some money, and there's nothing wrong with this unless the App was designed with malware intent, or, had a way for malware to infect your phone or tablet.

Just recently (August 12th) Wade Williamson wrote an interesting article for the Paloalto Research Center Blog entitled: "Mobile Devices = New Malware and New Vectors". Two excerpts:

"Mobile applications are heavily dependent on ad revenues to make money for the developer. However, mobile ads work a bit differently than the ads you encounter on a web-page, which are simply delivered from a web-server to your browser. Instead, the mobile application needs to reach out to the Internet and pull the correct ad in order to get paid. To do this the application developer must typically install an SDK or some piece of software for the ad network into the mobile application itself.

This embedded software hook ensures the right content gets served to the application, the ads get tracked, and the app developer ultimately gets paid. The problem is that this hook is a bit of an intentional backdoor into the mobile application and device, and not all mobile ad networks are as reputable as AdMob. So if the mobile ad network turns malicious, then a completely benign application could begin bringing down malicious content to the device. What you have at that point is a ready-made botnet. The only difference is the ad network converts from pushing benign approved content to malicious content – the architecture is the same."

Please read his complete article HERE.

'Nuff Said,
Brian

No comments:

Post a Comment