Researcher releases PoC rooting app that exploits recent Android zero-day

Late last month Google Project Zero researcher Maddie Stone detailed a zero-day Android privilege escalation vulnerability (CVE-2019-2215) and revealed that it is actively being exploited in attacks in the wild. She also provided PoC code that could he… Continue reading Researcher releases PoC rooting app that exploits recent Android zero-day

Ghost Push Trojan still a major threat to most Android users

The Ghost Push Trojan (also known as Shedun) is still a considerable threat to Android users around the world. The malware is focused on displaying ads, promoting webpages and apps, and this is how its creators turn a profit. In fact, Cheetah Mobile researchers say that the number of apps promoted by recent variants of this malware rivals that of apps offered by some third-party app stores. These particular variants, that come disguised as an … More Continue reading Ghost Push Trojan still a major threat to most Android users

Bogus Pokémon GO guide app roots Android devices

The popularity of Pokémon GO is apparently on the wane, but there are still more than enough players to make it a good lure for cyber crooks. In fact, fake apps like the “Guide For Pokémon Go New” recently spotted on Google Play can end up being downloaded by as many as half a million users. At least 6,000 users ended up installing and running it, Kaspersky Lab researcher Roman Unuchek notes, and additional victims … More Continue reading Bogus Pokémon GO guide app roots Android devices