Thursday, January 4 2024 – 08:00 WIB
Gadget – As technology develops, threats to the security of Android devices become more sophisticated. The latest malware in the Android malware family is not only destructive, but also clever at disguising itself as health, gaming, horoscope and productivity apps.
When users are not alert, they can unknowingly download and allow Android accessibility to such malware.
Known as Xamalicious, this malware has the characteristic of requesting user access to Android accessibility services during the installation process.
This action gives the malware the ability to carry out its tasks more effectively.
Interestingly, all communications and data sent between the command-and-control (C2) server and the infected device are encrypted using JSON Web Encryption (JWE) tokens with the RSA-OAEP and 128CBC-HS256 algorithms.
This combination, along with HTTPS protection, makes it difficult for security systems to detect.
The initial stage of the Xamalicious attack also includes a function to update the main Android package (APK) files itself.
2024-01-04 01:00:00
#Hidden #Danger #Android #Malware #Disguised #Health #Apps #Games