Researchers say they have discovered a sophisticated trojan that targets Android smartphones – exploiting two previously unknown vulnerabilities in the mobile platform and a third flaw in separate software – to send text messages to premium-rate numbers and download other malware onto victims’ phones.Roman Unuchek, a Kaspersky researcher, on Thursday published an analysis about the trojan, dubbed Obad. According to Unuchek, a device administrator flaw in the Android operating system makes it impossible for a user to delete the malware once it gains extended administrator privileges on the phone. In addition, a second Android vulnerability inhibits the platform’s ability to process an Android .xml file, called “AndroidManifest,” making it difficult for the malware to be detected.
SOURCE: scmagazine.com
The opinions expressed in this post belongs to the individual contributors and do not necessarily reflect the views of Information Security Buzz.