| 

All the world's a Stagefright

  • Post author: Omid Farhang
  • Post published: October 9, 2015
  • Reading Time: 1 min
  • Word Count: 202 words

Hereā€™s how security vulnerabilities are supposed to be handled. One, a researcher discovers an issue. Two, the people who make the software find a solution. And three, the solution is then made available, ideally by automatic update. Thatā€™s what Windows does, and what Apple does. It isnā€™t always as fast as it should be, but at least once the fix exists itā€™s available almost instantly. Hereā€™s how it works with Android. ...

Continue Reading All the world's a Stagefright

Dropbox Makes PDF Viewing Less Painful, Adds Push Notifications For Shared Folders

  • Post author: Omid Farhang
  • Post published: February 16, 2013
  • Reading Time: 2 min
  • Word Count: 325 words

Just a few days after adding a new set of features to Dropbox for Teams, the cloud storage company rolled out a new version of its iOS application which introduces a few useful additions as well. For starters, it has added an improved PDF viewer, which lets you navigate to any page in the document by tapping on the thumbnail. Itā€™s rather awesome, in fact. The update also introduces push notifications for folders shared with you ā€“ a feature thatā€™s now available on Android, too. ...

Continue Reading Dropbox Makes PDF Viewing Less Painful, Adds Push Notifications For Shared Folders

Ladies with few clothes tend to cause a lot of trouble on PCs ā€“ and now on Android devices too

  • Post author: Omid Farhang
  • Post published: August 2, 2012
  • Reading Time: 6 min
  • Word Count: 1112 words

Cross-posted from Surelist The appearance of a new Android malware family is not that surprising at all today. Especially when we talk about SMS Trojans which are one of the most popular and oldest type of threats created for extracting money from users. A new family of SMS Trojans named Vidro appeared a few days ago but weā€™ve already collected a lot of APK files with very similar functionality. At the moment all the samples we have found target users only from Poland. ...

Continue Reading Ladies with few clothes tend to cause a lot of trouble on PCs ā€“ and now on Android devices too

‘Botnet' sends out spam as malware spreads on Android phones: researcher

  • Post author: Omid Farhang
  • Post published: July 15, 2012
  • Reading Time: 2 min
  • Word Count: 307 words

Malware has been spreading on Android mobile phones that takes control of certain email accounts to create a ā€œbotnetā€ to send out spam, a security researcher says. Microsoft security engineer Terry Zink says the malware has infected phones of usersā€™ Yahoo email accounts to send out spam messages. ā€œWeā€™ve all heard the rumors, but this is the first time I have seen it ā€“ a spammer has control of a botnet that lives on Android devices,ā€ Zink said in a blog post on Tuesday. ...

Continue Reading ‘Botnet' sends out spam as malware spreads on Android phones: researcher

Fake Skype app on Android is malware

  • Post author: Omid Farhang
  • Post published: July 15, 2012
  • Reading Time: 2 min
  • Word Count: 248 words

ZDNet Wrote: A new piece of malware is trying to take advantage of Skypeā€™s increasing popularity, especially on mobile devices. Cybercriminals have created a fake version of the Skype for Android app, designed to earn money from unsuspecting users. Trend Micro, which first discovered the malware, is calling this particular threat JAVA_SMSSEND.AB. The Java in the name should not surprise you, given that Android apps are primarily developed in a custom version of the programming language. Thankfully, this is not a very good fake. The app in question only runs on older (pre Software Installation Script) Symbian phones or Android devices that allow execution of Java MIDlet. ...

Continue Reading Fake Skype app on Android is malware

Warning: Fake Biophilla app on Android is malware

  • Post author: Omid Farhang
  • Post published: April 27, 2012
  • Reading Time: 2 min
  • Word Count: 340 words

Corss-posted from ZDNet: Summary: Cyber criminals have created a fake Biophilla app for Android that is really just malware in disguise. Your first red flag should be that Biophilla is officially available on iOS, but not on Android. During April alone, weā€™ve already seen malicious versions of Angry Birds Space and Instagram in the wild. Both are Android apps that are really just malware designed to generate money from unsuspecting users by sending expensive international text messages. Now the same is happening with the popular Biophilla app. ...

Continue Reading Warning: Fake Biophilla app on Android is malware

Android malware poses as Angry Birds Space game

  • Post author: Omid Farhang
  • Post published: April 12, 2012
  • Reading Time: 1 min
  • Word Count: 203 words

Android malware authors have seized an opportunity to infect unsuspecting smartphone users with the launch of the latest addition to the immensely popular ā€œAngry Birdsā€ series of games. SophosLabs recently encountered malware-infected editions of the ā€œAngry Birds Spaceā€ game which have been placed in unofficial Android app stores. The Trojan horse, which Sophos detects as Andr/KongFu-L, appears to be a fully-functional version of the popular smartphone game, but uses the GingerBreak exploit to gain root access to the device, and install malicious code. ...

Continue Reading Android malware poses as Angry Birds Space game

Instagram Sign-Up Page Now Beckons Android Users

  • Post author: Omid Farhang
  • Post published: March 25, 2012
  • Reading Time: 2 min
  • Word Count: 287 words

Mashable: The day when Android users will first lay hands on the red hot photo-sharing app Instagram just got even closer. Late Saturday, a sign-up page appeared on Instagramā€™s website, inviting all those of the Android persuasion to sign up to be notified when the app is first available for that OS. The company still isnā€™t saying when the long-awaited Android Instagram app will actually become available. But now, at least those eager to try out the free app can take some sort of action that brings them closer to Instagram. ...

Continue Reading Instagram Sign-Up Page Now Beckons Android Users

New automated sandbox for Android malware

  • Post author: Omid Farhang
  • Post published: March 4, 2012
  • Reading Time: 1 min
  • Word Count: 110 words

ISC Diary: One of the things that Iā€™ve been working on lately is building an automated malware analysis environment to handle Android malware similar to the one I built for Windows malware.Ā Iā€™m not quite there yet, but I was quite pleased to here about the new service being offered by the folks at Die UniversitƤt Erlangen-NĆ¼rnberg.Ā This is still a research project, so if you choose to use it, be understanding.Ā Donā€™t expect 24Ɨ7 uptime and letā€™s try not to DoS them.Ā That said, Iā€™m looking forward to seeing how well it works and how the dynamic analysis will work once it is actually in production. ...

Continue Reading New automated sandbox for Android malware

Android smartphones infected via drive-by exploit

  • Post author: Omid Farhang
  • Post published: March 2, 2012
  • Reading Time: 2 min
  • Word Count: 415 words

At the RSA Conference 2012, former McAfee executives George Kurtz and Dmitri Alperovitch have presented a Remote Access Tool (RAT) that infects Android smartphones (version 2.2). They used an as-yet unpatched bug in Androidā€™s WebKit browser to inject the malware. The researchers say that they bought the vulnerability information, and a range of other tools, on the black market. The finished exploit is based on 20 components that apparently cost a total of $1,400 on the black market. ...

Continue Reading Android smartphones infected via drive-by exploit