• About
  • Advertise
  • Privacy Policy
  • Contact
Android Kenya
  • Home
  • News
  • Apps
  • Gadgets
  • Reviews
  • Deals
  • How To
  • Knowledge Base
No Result
View All Result
  • Home
  • News
  • Apps
  • Gadgets
  • Reviews
  • Deals
  • How To
  • Knowledge Base
No Result
View All Result
Android Kenya
No Result
View All Result
Home News

New “TangleBot” malware uses interest in COVID-19 to trick Android users into infecting their devices

Naftaly Kariuki by Naftaly Kariuki
September 27, 2021
in News
0
Android devices victims of preinstalled malware, new report shows
FacebookTwitterWhatsApp

In what is now becoming a recurring occurrence, new malware is out in the wild targeting Android users. Just a few weeks ago, we highlighted how the “Joker Virus” had already wreaked havoc on several apps in the Play Store, prompting Google to pull down the affected apps to prevent the virus from being installed unknowingly by more people.

The new virus named “TangleBot” uses people’s interest in Covid-19 to trick Android users into clicking a link that will infect their mobile handsets.

Cloudmark, a company that deals with mobile and email security, says that the malware sends Android users a text message claiming to have the latest Covid-19 guidance in their area or informs them that their Covid-19 vaccine appointment has been scheduled.

When you fall for this message and click on the link, you are prompted to update your phone’s Adobe Flash Player, which instead installs the virus on your Android phone.

“The malware has been given the moniker TangleBot because of its many levels of obfuscation and control over a myriad of entangled device functions, including contacts, SMS and phone capabilities, call logs, internet access, [GPS], and camera and microphone,” Cloudmark researchers.

The deep level of TangleBot access means that attackers can interfere with voice call functions to block calls and to also make calls silently in the background without users having any idea what is going on. In practice, this is an ideal set up for premium number fraud, where a user is charged a high rate for making a call to an attacker controlled toll number.

READ:  Moto Edge X30 first phone to rock Snapdragon 8 Gen 1 chip

Ryan Kalember, executive vice president at Cloudmarks’s parent company Proofpoint also points out that the TangleBot malware has the capability to show hacked users an “overlay” screen that appears authentic but is instead a fake window being run by attackers to steal information.

“These overlays are being used to hack banking credentials because the users might believe they are logging into their mobile banking while typing in their information on a fake screen, which then relays the information to the hackers,” Kalember

“Harvesting of personal information and credentials in this manner is extremely troublesome for mobile users because there is a growing market on the Dark Web for detailed personal and account data,” according to Cloudmark. “Even if the user discovers the TangleBot malware installed on their device and is able to remove it, the attacker may not use the stolen information for some period of time, rendering the victim oblivious of the theft.”

Cloudmark notes that criminals are increasingly using mobile messaging as a method of attack, and asks users to avoid responding to unsolicited commercial messages.

Clicking links present in text messages is also very risky and should be avoided at all costs, especially ones with names that try to mimic well-known establishments.

Kalember concludes by pointing out that the discovery does not mean there is a security vulnerability in Android. This is because the criminals are tricking a user into installing the virus using information that the user is most likely interested in, in this case Covid-19, rather than using a vulnerability on Android OS to get access.

Join our Telegram channel
Previous Post

Galaxy S21 FE launch event cancelled, doubts whether the phone will be released

Next Post

Google reportedly developing its own foldable phone named “Jumbojack”

Related Posts

Xiaomi Mi Home store kenya
News

CA report reveals how your Android phone and smart home gadgets are opening doors for cyber attacks

January 16, 2025
CAK-Kenya
News

CA’s Q3 2024 cybersecurity report warns of surge in Android malware threats

January 16, 2025
Safaricom-CEO-Ndegwa
News

Safaricom awarded top certification in privacy information management amid data-sharing allegations

January 16, 2025
Next Post
Samsung unveils new foldable smartphones and wearables, available in Kenya in September

Google reportedly developing its own foldable phone named “Jumbojack”

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Subscribe to our newsletter

  • Trending
  • Comments
  • Latest
Redmi-Note-13-4G

Redmi Note 13 series guaranteed 4 years of Android software updates until 2028

January 30, 2024

Oppo A60 review: Rugged darling

June 10, 2024
Tecno Spark 3 Pro-10

How to fix OTG connected pop-up error on Tecno phones

July 28, 2019
Oppo, Xiaomi and vivo partner to make data transfers between their phones seamless

Oppo, Xiaomi and vivo partner to make data transfers between their phones seamless

March 24, 2023
XAI-Grok

Trend of Grok users digitally undressing women on X sparks backlash

0
Telegram-Android-Kenya

Telegram rolls out encrypted group calls, business automation, and gift upgrades

0
Oppo-A5-Pro-in-Kenya

Here’s the global average selling price of Android phones vs iPhones in Q1 2025

0
Vivo-X200-Pro

Vivo is Android’s revenue champion in Q1 2025, Samsung and Xiaomi hold ground on shipments

0
XAI-Grok

Trend of Grok users digitally undressing women on X sparks backlash

May 5, 2025
Telegram-Android-Kenya

Telegram rolls out encrypted group calls, business automation, and gift upgrades

May 5, 2025
Oppo-A5-Pro-in-Kenya

Here’s the global average selling price of Android phones vs iPhones in Q1 2025

May 5, 2025
Vivo-X200-Pro

Vivo is Android’s revenue champion in Q1 2025, Samsung and Xiaomi hold ground on shipments

May 5, 2025
  • About
  • Advertise
  • Privacy Policy
  • Contact

© 2025 Android Kenya

No Result
View All Result

© 2025 Android Kenya