New Android malware spies on you while posing as a Google System Update

New Android malware spies on you while posing as a Google System Update


New malware with extensive spyware capabilities steals data from infected Android devices and is designed to automatically trigger whenever new info is read to be exfiltrated.


The spyware can only be installed as a 'System Update' app available via third-party Android app stores as it was never available on Google's Play Store.


This drastically limits the number of devices it can infect, given that most experienced users will most likely avoid installing it in the first place.


The malware also lacks a method to infect other Android devices on its own, adding to its limited spreading capabilities.


Steals almost everything


However, when it comes to stealing your data, this remote access trojan (RAT) can collect and exfiltrate an extensive array of information to its command-and-control server.


Zimperium researchers who spotted it observed it while "stealing data, messages, images and taking control of Android phones."


"Once in control, hackers can record audio and phone calls, take photos, review browser history, access WhatsApp messages, and more," they added.


Zimperium said its extensive range of data theft capabilities includes:


  • Stealing instant messenger messages;

  • Stealing instant messenger database files (if root is available);

  • Inspecting the default browser's bookmarks and searches;

  • Inspecting the bookmark and search history from Google Chrome, Mozilla Firefox, and Samsung Internet Browser;

  • Searching for files with specific extensions (including .pdf, .doc, .docx, and .xls, .xlsx);

  • Inspecting the clipboard data;

  • Inspecting the content of the notifications;

  • Recording audio;

  • Recording phone calls;

  • Periodically take pictures (either through the front or back cameras);

  • Listing of the installed applications;

  • Stealing images and ..

    Support the originator by clicking the read the rest link below.