• Some users have recently had their accounts hijacked. It seems that the now defunct EVGA forums might have compromised your password there and seems many are using the same PW here. We would suggest you UPDATE YOUR PASSWORD and TURN ON 2FA for your account here to further secure it. None of the compromised accounts had 2FA turned on.
    Once you have enabled 2FA, your account will be updated soon to show a badge, letting other members know that you use 2FA to protect your account. This should be beneficial for everyone that uses FSFT.

Android Malware Features a Dangerous New Attack

monkeymagick

[H]News
Joined
Jun 22, 2008
Messages
480
Beware Android users, there's a trojan called Dvmap, using new techniques and good ol' false sense of security to infect your devices. Kaspersky Lab researchers discovered the malware disguising itself as a simple puzzle game, colourblock. The developers bypassed software checks by first uploading a "clean version" and then injecting code into the system library and removing root detection after obtaining root access rights through the user's permission. Already downloaded well over 50,000 times off the Google Play store, the app has since been removed.

Once successfully installed on the device, the trojan installs a root exploit back installing several tools - which appear to contain comments in Chinese, potentially pointing to the malware authors - in order to run the main phase and overwriting Android's code with malicious code. Researchers note that this could be "very dangerous" and cause some devices to crash.
 
How can the user give the app root access if the device isn't rooted? Am I reading that right?
 
Last edited:
Its that Russian Kapersky Lab.. Russia being so advanced, the malicious code is probably not embedded in the app, but generated in your device when you see the words Kapersky Lab 3 times within a single webpage.

HA! Love it. :D
 
How can the user give the app root access if the device isn't rooted? Am I reading that right?
It cant. This app only infects users with root access who then grant root permissions when the app asks for it, which makes you an idiot to get infected by this. The only "exploit" component of this is that it buries itself into the system by overwriting critical component files.
 
Back
Top