April 27, 2025
Trending News

Android: They detect dangerous malware that steals keys from banking apps

  • April 14, 2022
  • 0

security booster Android adds a new competitor to the malware category: eighta newly discovered intrusive software bury anyone application from Google Play store check device at any time

security booster Android adds a new competitor to the malware category: eighta newly discovered intrusive software bury anyone application from Google Play store check device at any time without the user’s knowledge.

Once infected, attackers take control. phoneWhat stealing the passwords of different banking applications that the user has installed while entering them.

One of the great advantages of Android is that it has a large number of options, which becomes a disadvantage when installing new applications: because of this freedom, the risk of loading is higher. software which does not have a good purpose.

It’s something that pops up almost every week as new malware pops up. The last one has a name: October

Malware is invisible, self-contained, difficult to detect and remove

Octo may not be noticed as an update to an app. And hacking into a phone opens the door for attackers to do whatever they want with it.

Research by security firm Threat Fabric has revealed how this new malware, a type of bot, came to be. It can infiltrate applications without being detected by the system. Its automatic operation, which disables Google Play Protect, is one of the first attack measures.

Then overlay apps log keystrokes, open a window on the phone and enable remote interaction. Everything that the user does not notice.

Octo, the name given to the malware by the developer, is part of the family. ExoBotA type of malware that has evolved since its development in 2016.

With Octo’s integration into hooked applications, the malware opens a VNC (Virtual Network Computing) session with the attack panel. transmit the screen streaming; when using accessibility tools for Capture and simulate panel touches.

Because Octo conflicts with other applications without the user noticing, an attacker can remotely observe how it’s done. Enter passwords for banking apps.

You can also watch SMS two-step verification codes, view contacts Whats up and other private information.

Threat Fabric claims that Octo has been exploited in various apps, some of which are on Google Play. And it aims hacking most banking apps, an indication of the enormous dangers of malware.

How to access safe mode to delete suspicious spy apps on Android

when restarted mobile in safe mode, All third-party apps are disabled and allow you to delete apps that cannot be deleted otherwise. It should be noted that this will not work if the malware has root access to the system.

What you need to do to start in safe mode press the power button until this alternative appears. On some models, the option appears when you press the power button. To close and you have to press there again until the legend appears. safe mode and then click that option again.

Then you should go Adjustment and enter there Applications. You will see a list with all downloaded apps. You need to check if you find any with a strange name or don’t remember downloading it and delete it.

Before doing this, should make a call to know what has been removed from the device and to avoid uninstalling some useful programs that might affect its proper functioning.

If there is any doubt that cannot be removed, you should enter. Adjustment anyone Settings/Lock Y Security/Other security settings/Device management. must be Disable the suspicious program’s access.

If none of these work, you can resort to taking an action. copy of all cell phone information and make one factory restoration in the menu Settings.

Source: Info Bae

Leave a Reply

Your email address will not be published. Required fields are marked *

Exit mobile version