1. Main
  2. Learn
  3. Industry
  4. Internet

Malware worms its way into more apps: study

©Reuters/Barry Huang ©Reuters/Barry Huang

Malicious software is increasingly making its way into mobile phones through "cloned" versions of popular apps, and software weaknesses in legitimate ones, AFP reports according to security researchers.

McAfee Labs said in its quarterly threat assessment that weaknesses in app security is becoming a growing problem for owners of mobile devices.

In some cases, cybercriminals can take advantage of the popularity of an app by creating a clone, which can extract personal data or even allow an attack to gain control of the device.

This was the case with "Flappy Birds," a mobile game which saw a meteoric rise but was later withdrawn by its creator.

McAfee Labs sampled 300 Flappy Bird clones and found that almost 80 percent contained malware.

"Some of the behavior we found includes making calls without the user's permission; sending, recording, and receiving SMS messages; extracting contact data; and tracking geolocation. In the worst cases, the malware gained root access, which allows uninhibited control of anything on the mobile device including confidential business information," the report said.

The McAfee report said some legitimate apps have security flaws which can be exploited by hackers.

The researchers said they discovered an Android trojan "which exploits an encryption method weakness in the popular messaging app WhatsApp" and then steals conversations and pictures stored on the device.

"Although this vulnerability has now been fixed, we can easily imagine cybercriminals continuing to look for other flaws in this well-known app," the report said.

Digital pickpockets

The researchers also said they identified malware can steal money from a digital wallet.

One of the malware programs identified "is disguised as an update for Adobe Flash Player or another legitimate utility app," and can take over a digital wallet to send a money transfer to the attacker's server.

"Mobile malware has recently started to use legitimate apps and services, in addition to a platform's standard features, to circumvent conventional surveillance by app stores and security products," the McAfee report said.

"Consequently, protecting only the underlying platform is no longer sufficient. We believe that developers need to protect their apps and services from unauthorized and malicious use."

McAfee's Vincent Weafer said people may be lulled into a false sense of security about mobile apps.

"We tend to trust the names we know on the Internet," Weafer said.

"The year 2014 has already given us ample evidence that mobile malware developers are playing on these inclinations, to manipulate the familiar, legitimate features in the mobile apps and services we recognize and trust."


Nobel prizewinner proposes a new city in KZ
New abnormal snowfalls expected in Kazakhstan
Huge glacier retreat triggered in 1940s
Hyperloop construction begins in Las Vegas
"Moonlight" to top Spirit Awards nominations
Oil prices fall due to investors uncertainty
New dwarf galaxy discovered around Milky Way
Kanat Islam becomes a top ten WBO boxer
World oil prices continue to rise
Kazakhstan expects warming - Kazhydromet
Merkel to seek fourth term as chancellor
Sale of Tintin drawings set to break records
US, EU stocks fall as markets focus on dollar
Pacific leaders urged to defend free trade
EU warns eight nations on budget deficit
Universiade-2017: Athletic Village is ready
Bob Dylan can't make Nobel ceremony
Messi will never leave Barca - club president
Google, Facebook take aim at 'fake' news
Aerosmith announces Europe 'farewell' tour
Putin, Trump to normalise US-Russia ties
At least 10 hurt in southern Turkey blast
6.2 quake hits western Japan
OPEC agrees shock oil output cut
Israeli ex-president and Nobel laureate Peres dies
Germany blocks WhatsApp data transfers to Facebook
32,000 arrested in Turkey coup probe
Youth to the fore as Milan fashion week opens
Xenophobia threatening peace in eastern Germany
Four-in-10 Japanese are virgins: poll
Sweden re-militarises Baltic island of Gotland
China to launch second space laboratory: Xinhua
More than a billion stars mapped in Milky Way: ESA
Boxing: Golovkin eyes Saunders after stopping Brook
Kazakhstan shifts PM to security chief
Oil prices gain despite rising OPEC supply forecast
US to give Philippines military planes
Singapore wages war on Zika-bearing mosquitoes
Italy quake death toll nears 250
Viral photos add fuel to French burkini debate
18 dead as Italy struck by powerful quake
Japan's first lady visits Pearl Harbor
Pokemon's a no-go on Bangkok's roads
July was Earth's hottest month in modern times
Pakistan rock climbers scale new heights