Korean Android users targeted with SMS-stealing Trojan
Posted on 26.02.2013
Bookmark and Share
The popularity of Starbucks coffee shop coupon application is being misused by malware peddlers to target South Korean Android users and intercept their incoming text messages.

Once installed, the app will display the familiar icon, but if the user tries to start it, a fake error message reporting that the server is overloaded and unable to process the request appears:


malware peddlers are counting on the user believing that the app is simply having problems, while in reality it works furiously to create a service to run in the background after the device has been rebooted, warn McAfee researchers.

The fake app / Trojan sends the phone number associated with the devise to a remote server and by doing so "registers" the infection. It's main function is to monitor incoming SMS messages, which it collects and sends to the same remote server. It also allows blocking of certain messages.

It is unknown why the cyber crooks behind this malware collect SMS messages and what they do with them.










Spotlight

IT security jobs: What's in demand and how to meet it

Posted on 15 May 2013.  |  Let's say you want a career in information security, where do you start? What credentials do you need? What are employers looking for? Read on to find some answers.


Daily digest

By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
  

Weekly newsletter

With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.
  

 
DON'T
MISS

Fri, May 17th
    COPYRIGHT 1998-2013 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //