Data-stealing Android Trojan masquerades as greeting-sending app
Posted on 29.12.2011
Text messages have largely replaced seasonal (and non) greeting cards, and there are mobile apps out there that let you send prewritten witty/sweet messages to friends and family.

But there are also some that pretend to do that, and F-Secure researchers have recently spotted a Trojan targeting Chinese Android users that masquerades as just that type of app.

Dubbed AdBoo, the app seemingly lets users choose a message template (jokes, New Year wishes, and more), then asks them to choose the contact to whom it will be sent. But it doesn't actually send the message - a dialog box notifying them of a "Sending Fail" pops up instead.

In the background, the Trojan harvests information such as phone model and number, Android version and IMEI number and sends it to a remote server.

It is also interesting to note that the researchers believe that the developer of this app is also the one that developed another recently spotted Android Trojan that sends SMS messages to premium-rate numbers, as both pieces of malware are signed with the same certificate.


Pen-testing drone searches for unsecured devices

You're sitting in an office, and you send a print job to the main office printer. You see or hear a drone flying outside your window. Next thing you know, the printer buzzes to life and, after spitting out your print job, it continues to work and presents you with more filled pages than you expected.

Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.

Daily digest

Receive a daily digest of the latest security news.

Fri, Oct 9th