Posted on 07/31/2017 3:57:49 AM PDT by TigerLikesRooster
Pre-installed Trojan in Cheap Android Devices Steal Data, Intercept Chats
Android devices are one of the most vulnerable mobile OS (operating systems) due to its open source nature. But what would a user do if their device is delivered to them with a pre-installed malware? Well, Lets talk about that.
IT security researchers at Dr. Web, a Russian cyber security firm has discovered that a number of Android devices including Leagoo M8, Leagoo M5 Plus, Nomu S20 and Nomu S10 have a malicious program built into the firmware.
Dubbed Triada by researchers the Trojan is embedded in the Zygote components system process whose function is to launch apps and programs on a device. By infecting Zygote, the trojan downloads and executes additional modules on targeted devices All this is done without the knowledge of the user.
The researchers further noticed that Triada is embedded into libandroid_runtime.so system library which is used by every Android app. This means millions of devices could be infected. However, it is unclear how the Trojan made its way into these devices.
(Excerpt) Read more at hackread.com ...
Manufacturer installed ...
The jokes write themselves
Pre-installed Trojan
“The jokes write themselves”
$$$$$$$$$$$$$$$$$$
Yeah, I thought the article was about the new sexbots
Such a deal.
This sort of thing is why I stick with Apple phones. Say what you will about Apple, they’ve at least demonstrated some integrity when it comes to protecting user privacy/data, and their locked-down App Store model makes it more difficult for malware to get loaded on your device.
Android is just a free-for-all, and at the top is Google, an organization that lives by mining your data.
I did a very cursory look at Mobile Device Management systems a few years ago for a large corporate client as part of another project. I came away with the attitude that if an organization cared about security, they’d implement mobile device management and only allow Apple phones and tablets.
google collecting data? Say it ain’t so. (fyi for those that don’t know - andriod is google’s mobile operating system)
If it is built in to the firmware I an going to guess that is Chinas government building the devises to spy on the users.
So buy Chinese junk and pay for the devises that spy on you.
Svaes the wait of you having to go download it from the web.
>Leagoo M8, Leagoo M5 Plus, Nomu S20 and Nomu S10
Might be out of the loop, but those don’t sound even 2nd-tier.
Least, w/ Android, even their firmware, issue is found and community steps up to the plate.
Flash & done.
Been running a Samsung Tab2 w/ Slim6, as Samsung hasn’t kept up w/ the OS. All community built/based and updated. Install what you will.
Firmware? *PFFfft*
The damn WiFi chips in ‘droid AND iXxx phones also may have vulerabilities (sorry, Apple fanboys):
http://hackaday.com/2017/07/29/broadpwn-all-your-mobiles-are-belong-to-us/#comments
Lol
Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.