Huawei News

More than 500,000 Huawei users downloaded apps infected with Joker malware

According to the information, more than 500,000 Huawei users downloaded apps infected with Joker malware from the company’s official Android store and subscribed to premium mobile services. Researchers found 10 seemingly harmless applications in AppGallery that contain code that connects to malicious command and control servers to receive configuration and add-ons.

A report by anti-virus vendor Doctor Web pointed out that these malicious applications retain their advertised functions, but the downloaded components allow users to subscribe to advanced mobile services. In order to make users undetectable, the infected application requires access to notifications, which allows them to intercept the confirmation code sent by the subscription service via SMS.

According to the researchers, the malware can subscribe to up to five services for a user, but the threat actor can modify this limit at any time. The list of malicious applications includes virtual keyboards, camera applications, launchers, online messengers, sticker collection, coloring programs, and games.

Most of them are from one developer, and two are from different developers. These ten applications were downloaded by more than 538,000 Huawei users. These apps inform Huawei that the company has deleted these apps from AppGallery.

Application Names:

Advertisement
  • Super Keyboard
  • Happy Colour
  • Fun Color
  • New 2021 Keyboard
  • Camera MX – Photo Video Camera
  • BeautyPlus Camera
  • Color RollingIcon
  • Funney Meme Emoji
  • Happy Tapping
  • All-in-One Messenger

The researchers said that the same modules downloaded by the infected application in AppGallery also exist in other applications on Google Play and are used by other versions of Joker malware. The complete list of infected apps is available here.

The history of Joker malware can be traced back to 2017, and its traces are constantly being found in applications distributed through the Google Play store. In October 2019, Kaspersky’s Android malware analyst Tatyana Shishkova posted more than 70 hacked apps on Twitter, and these apps have entered the official store.

And reports of malicious software in Google Play continue to appear. At the beginning of 2020, Google announced that since 2017, about 1,700 apps infected with Joker have been deleted. In February last year, Joker still existed in the store, and even in July last year, it continued to slip away from Google’s defense system.

(Via)

Huawei Update Social Platform Links – FacebookTwitter & Telegram

Advertisement
Amit

I write about Huawei Latest News, EMUI Updates & more. I am also a fitness freak. For any information, tip or help send me an email at huaweiupdatenews@gmail.com

Recent Posts

Huawei FreeBuds 6i HarmonyOS 4.2.0.216 update rolling out

Huawei has started rolling out the HarmonyOS 4.2.0.216 software update to its FreeBuds 6i wireless…

2 days ago

Huawei AI Life App getting 14.1.1.332 November 2024 update

Huawei AI Life is a unified platform for managing IoT devices. Easily control your Wi-Fi/mobile…

2 days ago

Huawei Browser November 2024 update brings 15.0.7.301 version

Huawei has started rolling out a new update to its Browser App. As per the…

6 days ago

A new update for Huawei Quick App Center is now available

Huawei updated its Quick App Center with version 14.3.1.301. Huawei Quick App Center allows you to…

6 days ago

Huawei HMS Core October 2024 version 6.14.0.322 rolling out

Huawei has started updating its applications to the latest versions. Now adding one more app…

1 week ago

TSMC Halts Shipments to Chinese Firm Sophgo After Chip Found in Huawei Processor

TSMC has halted shipments to Chinese chip designer Sophgo after a chip it manufactured was…

2 weeks ago