Stories
Slash Boxes
Comments

SoylentNews is people

posted by Fnord666 on Wednesday April 08 2020, @07:57PM   Printer-friendly
from the rooted-in-your-phone dept.

Arthur T Knackerbracket has found the following story:

An Android malware package likened to a Russian matryoshka nesting doll has security researchers raising the alarm, since it appears it's almost impossible to get rid of.

Known as xHelper, the malware has been spreading mainly in Russia, Europe, and Southwest Asia on Android 6 and 7 devices (which while old and out of date, make up around 15 per cent of the current user base) for the past year from unofficial app stores. Once on a gizmo, it opens a backdoor, allowing miscreants to spy on owners, steal their data, and cause mischief.

It has only recently been picked apart by Kaspersky Lab bods, and what makes the malware particularly nasty, the researchers say, is how it operates on multiple layers on the tablets and handsets it infects.

"The main feature of xHelper is entrenchment," explained Igor Golovin on Tuesday. "Once it gets into the phone, it somehow remains there even after the user deletes it and restores the factory settings."

[...] The best thing to do, though, is go a step further than a factory reset, and erase the flash memory completely, including the system partition, and put in a fresh clean copy. "If you have Recovery mode set up on your Android smartphone," said Golovin, "you can try to extract the libc.so file from the original firmware and replace the infected one with it, before removing all malware from the system partition. However, it’s simpler and more reliable to completely reflash the phone."

Even better advice is to avoid downloading any suspicious apps from the Google Play Store, just to be safe, and definitely don't use unauthorized third-party stores at all.


Original Submission

 
This discussion has been archived. No new comments can be posted.
Display Options Threshold/Breakthrough Mark All as Read Mark All as Unread
The Fine Print: The following comments are owned by whoever posted them. We are not responsible for them in any way.
  • (Score: 2, Funny) by Anonymous Coward on Wednesday April 08 2020, @08:20PM (8 children)

    by Anonymous Coward on Wednesday April 08 2020, @08:20PM (#980366)

    I peer over my walled garden and mock your malware problems.

    Starting Score:    0  points
    Moderation   +2  
       Funny=2, Total=2
    Extra 'Funny' Modifier   0  

    Total Score:   2  
  • (Score: 2) by DannyB on Wednesday April 08 2020, @09:58PM (1 child)

    by DannyB (5839) on Wednesday April 08 2020, @09:58PM (#980401) Journal

    What if these malware 'problems' were targeted only at these ancient old versions by *cough* someone *cough* who would be interested in you getting a newer phone with a newer version of Android.

    Naaaah. That could never happen.

    --
    If you eat an entire cake without cutting it, you technically only had one piece.
    • (Score: 1) by petecox on Thursday April 09 2020, @02:51AM

      by petecox (3228) on Thursday April 09 2020, @02:51AM (#980483)

      Until something better comes along.Sadly Librem 5 is unaffordable vaporware.

  • (Score: 3, Touché) by SomeGuy on Wednesday April 08 2020, @10:23PM (5 children)

    by SomeGuy (5632) on Wednesday April 08 2020, @10:23PM (#980406)

    I peer over my computerless POTS desk phone and mock your malware problems - and you.

    • (Score: 2) by Mojibake Tengu on Wednesday April 08 2020, @11:06PM (2 children)

      by Mojibake Tengu (8598) on Wednesday April 08 2020, @11:06PM (#980420) Journal

      Do you think your plain old desktop telephone cannot be tapped?

      --
      The edge of 太玄 cannot be defined, for it is beyond every aspect of design
      • (Score: 1, Informative) by Anonymous Coward on Thursday April 09 2020, @02:20AM

        by Anonymous Coward on Thursday April 09 2020, @02:20AM (#980478)

        True, but give him credit. You'd need a soldering iron and a chunk of time to do it.
        Those POTS phones can be hacked quiet easily, its just not as easy as remotely pwning a modern mobile phone

      • (Score: 2) by DannyB on Thursday April 09 2020, @04:05PM

        by DannyB (5839) on Thursday April 09 2020, @04:05PM (#980599) Journal

        Wait . . . um, you're saying that some kind of amazing technology has already been developed to tap POTS phones?

        OMG!

        --
        If you eat an entire cake without cutting it, you technically only had one piece.
    • (Score: 1, Touché) by Anonymous Coward on Wednesday April 08 2020, @11:06PM (1 child)

      by Anonymous Coward on Wednesday April 08 2020, @11:06PM (#980421)

      Yeah, it's OK. You can go back to sleep again, Gramps.

      • (Score: 2) by DannyB on Thursday April 09 2020, @04:06PM

        by DannyB (5839) on Thursday April 09 2020, @04:06PM (#980600) Journal

        Not for long. Those old POTS phones have loud and annoying ringers. Actual physical bells.

        --
        If you eat an entire cake without cutting it, you technically only had one piece.