Cyberpunk 2077 Headaches Grow: New Spyware Found in Fake Android Download

Threat actors impersonate Google Play store in scam as Sony pulls the game off the PlayStation store due to myriad performance issues. Continue reading Cyberpunk 2077 Headaches Grow: New Spyware Found in Fake Android Download

Google launches Android Enterprise Essentials, a mobile device management service for small businesses

Google today introduced a new mobile management and security solution, Android Enterprise Essentials, which, despite its name, is actually aimed at small to medium-sized businesses. The company explains this solution leverages Google’s experience in building Android Enterprise device management and security tools for larger organizations in order to come up with a simpler solution for […] Continue reading Google launches Android Enterprise Essentials, a mobile device management service for small businesses

Baidu apps in Google Play Store left users vulnerable to tracking, Palo Alto finds

A pair of Baidu applications on the Google Play Store were recently leaking users’ sensitive data that could be used to track users’ location, according to Palo Alto Networks’ Unit 42 research published Tuesday. Through reverse-engineering, the researchers at Unit 42, the research arm at Palo Alto Networks, found that both the Baidu Search Box and Baidu Maps applications used a software development kit (SDK) that would collect users’ MAC address, carrier information and international mobile subscriber identity (IMSI) number. It’s the kind of data that, if it were to fall into the wrong hands, could be used to stalk, monitor, or even harass an individual. IMSI numbers, for instance, could allow cybercriminals or state-linked actors to track someone, even if they switch to a new device, as IMSI numbers can be used to uniquely identify a user. Snoops using IMSI catchers, which imitate cell towers to capture a user’s location, have been known […]

The post Baidu apps in Google Play Store left users vulnerable to tracking, Palo Alto finds appeared first on CyberScoop.

Continue reading Baidu apps in Google Play Store left users vulnerable to tracking, Palo Alto finds

Another ‘Minecraft’ lesson for kids: Beware of deceitful adware apps

Part of the appeal of “Minecraft” is that the in-game experience is highly customizable with thousands of bits of third-party software. For mobile versions of the game, those “mods” can be downloaded as separate apps. If you pay attention to app-store security, you can probably guess where this is going, especially if you have kids. More than 20 of the “Minecraft” mods recently available in the Google Play Store didn’t do much for the game at all, and instead displayed ads on smartphones and tablets “in an extremely intrusive manner,” according to researchers at Kaspersky. The cybersecurity company says the store has taken down most of the apps since the researchers reported them, but a handful were still available as of Monday morning. Kaspersky’s findings are the latest reminder that mobile devices remain attractive targets for nuisance adware. And the makers of those sneaky apps aren’t really worried about customer […]

The post Another ‘Minecraft’ lesson for kids: Beware of deceitful adware apps appeared first on CyberScoop.

Continue reading Another ‘Minecraft’ lesson for kids: Beware of deceitful adware apps

Google Removes 25 Malicious Google Play Apps Stealing Facebook Login Credentials

Last month, Google removed 25 Android apps from its Google Play Store after discovering they were stealing users’ Facebook account credentials. The malicious apps, identified by security company Evina, appeared to be created by the same developer… Continue reading Google Removes 25 Malicious Google Play Apps Stealing Facebook Login Credentials

Researchers spot 24,000 Android Apps Leaking User Data

Comparitech researchers led by cybersecurity expert Bob Diachenko have revealed that 24,000 Android Apps expose user information through misconfigurations on Google Firebase, a popular development platform used by roughly 30% of apps on the Google Play… Continue reading Researchers spot 24,000 Android Apps Leaking User Data

Scammers are abusing mobile ad networks in an attempt to phish Android app users

A network that delivers ads to hundreds of Android apps also is directing users to malicious websites that could help scammers steal their information or overrun their device with spam. At least 400 apps in Google’s Play Store come embedded with proprietary software that is designed to help app developers monetize their program by serving ads. Scammers are exploiting that process, though, by inserting malicious ads into the software development kits (SDKs) which are meant to help developers earn a living. Domains and URLs sent in ads from the distribution framework known as StartApp flood users with links to malicious sites or push notifications for spam, according to new findings from mobile security firm Wandera provided exclusively to CyberScoop. StartApp, created and run by a New York-based marketing firm, does not appear to be behind any malicious content, though it is compensated by other firms that supply it with the malicious ads. StartApp did not […]

The post Scammers are abusing mobile ad networks in an attempt to phish Android app users appeared first on CyberScoop.

Continue reading Scammers are abusing mobile ad networks in an attempt to phish Android app users