Technology

SpyDealer Android Malware Steals Data From Apps

SpyDealer steals data from 40 apps including Facebook, WhatsApp, Skype, Tango and Baidu, spy on messages and location—according to the researchers

A newley discovered spyware and malware said to be stealing data from fabled apps Including Facebook, Skype, WhatsApp and Firefox for the past two years.

The malware dubbed as “SpyDealer” was unseen until the researchers from Palo Alto Networks discovered it. The malware was collecting wide range of personal information on the phones including; contacts, messages, call history, Wi-Fi information and location of the device.

Recording of phone calls and videos was also suspected with cyberespionage capabilities found in this Trojan. The malware is capable of taking photos from both rear and front camera, record voice of surroundings, record videos and other sensitive information including device location.

SpyDealer is said to be the most advanced type of Android malware, it is able to open a backdoor for compromised devices. The malware exploits the commercially available Android accessibility feature to root phones and gain super-user privileges.

Researchers found that malware employs root exploitation using commercial rooting app “Baidu Easy Root” and remains on the device to harvest personal data.

Just like many other malwares, SpyDealer receives commands from control server in order to remotely control the infected device. The interesting thing researchers have found is the malware is only capable of compromising devices that are running on Android versions 2.2 to 4.4. The Android versions between this bracket are the most vulnerable devices and prey for this malware.

CIA hacked Wi-Fi Routers For Years According To The Leaks

This practically means almost 500 million devices are still vulnerable who are running on older versions of software out of 2 billion devices.

Researchers are unaware of the fact how these devices became infected, but some evidence shows that Chinese users were attacked through compromised Wi-Fi networks.

Luckily the researchers from Plao Alto Network reported this ferocious threat to Google, in response Google has created new protections via “Google Play Protect” in order to remain safe from the threat.

The Malware is exploiting devices since, 2015 and exploited mostly Chinese apps in the count of 40.

The SpyDealer attempts to steal data from the following apps:

Facebook, Skype, WhatsApp, Wechat, Tango, Viber, Telegram, Viber, Tencent Weibo, Android Native Browser, Sina Weibo, Oupeng Browser, Firefox Browser, QQ, Baidu Net Disk, QQ Mail, Taobao and NetEasMail.

Recent Posts

Minecraft: Official PC requirements increased enormously

After years, the official system requirements for Minecraft are noticeably increasing. According to the developers,…

3 hours ago

Qualcomm is raising prices – cell phones, wearables, laptops will soon be even more expensive

Manufacturer Qualcomm is planning significant price increases for its Snapdragon chips. From September onwards, costs…

3 hours ago

Steam Deck in free fall: Suddenly no one wants the console anymore

Valve has significantly increased the prices for the Steam Deck. Since then, sales of handheld…

3 hours ago

How to Design a Professional Logo with AI Without Design Experience

A logo is often the first impression people have of a brand. Whether you're launching…

4 hours ago

Exploring the Digital Frontier: The Role of E-Wallets Today

In a world that's moving faster than most of us can keep up with, e-wallets…

4 hours ago

Microsoft finally wants to fix Xbox download problems

Fluctuating rates, overloaded servers and frozen updates often plague Xbox users. Microsoft is now intervening…

2 days ago