【】

A new strain of Android malware has infected 25 million devices and modified legitimate apps with a malicious ads module, according to a report by the security company Check Point.
It's believed the malware originated from a Chinese internet company that helps Chinese Android developers publish and promote their apps in foreign markets. The malware was disguised as Google-related updaters and "vending modules," which hid its own app icons and automatically replaced already-installed legitimate apps with its own version without the user knowing. This lead the researchers to name the malware "Agent Smith" because its behavior is similar to the character in the film The Matrixof the same name.
The malware first appeared in popular third-party app store 9Apps and targeted mostly Indian, Pakistani and Bangladeshi users. However, of the 25 million affected devices, 303,000 infections were detected in the US, and 137,000 in the UK.
Apps that were modified include WhatsApp, Opera Mini, Flipkart, as well as software from Lenovo and Swiftkey. The malware detected which apps were installed, patched them with a malicious ads modules, and then re-installed them on the device. For the user, it simply looks like the app is being updated as expected. Once the update is complete, the owner of the malware can then profit from the newly included ads.
Check Point believes the same malware could also be used for more malicious purposes such as credit card theft, with the company's report stating, "due to [the malware's] ability to hide its icon from the launcher and impersonates any popular existing apps on a device, there are endless possibilities for this sort of malware to harm a user's device."
The security firm says they submitted data to Google and law enforcement agencies, and as of publishing no malicious apps remain on the Play Store. Nevertheless, the malware managed to survive for as long as it did because, despite the original vulnerability Agent Smith was based on being patched in Android years ago, developers did not sufficiently update their applications.
Malware like this, "requires attention and action from system developers, device manufacturers, app developers, and users, so that vulnerability fixes are patched, distributed, adopted and installed in time," Check Point says.
Featured Video For You
Security flaw in Zoom allows website to turn on your Mac's camera without consent
TopicsAndroidCybersecurity
相关文章
These glasses hide a fitness tracker on your face
The last time a company tried popularizing wearable tech embedded in glasses, most notably with Goog2025-08-01- 2014冬季奧運會男子花樣滑冰金牌?是羽生結弦2014年2月,年僅19歲的羽生結弦奪得索契冬奧會金牌,成為亞洲首位冬奧會男子單人滑冠軍。羽生結弦,1994年12月7日出生於日本宮城縣仙台市,日本花樣 。2025-08-01
- 前言 :為什麽運動不流汗運動不出汗的原因 :流汗隻是調節身體溫度的機製 ,與運動效果沒有直接關係 。天氣熱也會流汗,不代表運動量充足 。長時間但太過溫和的運動,消耗的熱量或脂肪比不上短時間而有一定強度的運動 。運2025-08-01
- 被子起靜電怎麽辦?被子全是靜電可以采用以下方法進行處理。1.將有靜電的被子放置在太陽下曬1-3小時。2.用噴霧在被子上撒上適量的水,後用加熱毯,加熱40-60分鍾 。3.將被子用清。被子上有靜電 ,怎麽弄2025-08-01
Slack goes down again, prompting anxiety everywhere
Panic briefly took over on Tuesday when everyone's favorite messaging app/millstone went down tempor2025-08-01- 羅誌祥時間管理者是什麽梗?羅誌祥劈腿後被爆工作日程時間表,就出來了他是時間管理者的梗。因為工作日程算下來,每天隻有三四個小時睡覺,時間規劃很厲害。羅誌祥劈腿後被爆工作日程時間...羅誌祥“時間管理”是2025-08-01
最新评论