Kaw ad

Google tso tawm Android 13 tsuas yog ob peb hnub dhau los, tab sis twb hackers tau tsom mus rau yuav ua li cas hla nws qhov kev ntsuas kev nyab xeeb tshiab kawg. Ib pab neeg tshawb fawb tau tshawb pom malware hauv kev txhim kho uas siv cov txheej txheem tshiab los khiav tawm Google cov kev txwv tshiab ntawm cov apps twg tuaj yeem nkag mus rau cov kev pabcuam nkag mus tau. Kev tsim txom ntawm cov kev pabcuam no ua rau nws yooj yim rau malware txhawm rau taug qab cov passwords thiab cov ntaub ntawv ntiag tug, ua rau nws yog ib lub rooj vag siv ntau tshaj plaws rau hackers. Androidu.

Txhawm rau kom nkag siab tias muaj dab tsi tshwm sim, peb yuav tsum tau saib cov kev ntsuas kev nyab xeeb tshiab uas Google tau muab tso rau hauv Androidu13 ua. Tus tshiab version ntawm lub kaw lus tsis tso cai rau sideloaded apps los thov kev pab cuam nkag tau yooj yim. Qhov kev hloov pauv no yog tsim los tiv thaiv malware uas tus neeg tsis paub yuav tau rub tawm tsis tau sab nraud ntawm Google Play Store. Yav dhau los, xws li ib qho app yuav tau thov kev tso cai siv cov kev pabcuam nkag mus tau, tab sis tam sim no qhov kev xaiv no tsis yooj yim rau cov apps rub tawm sab nraud ntawm Google Store.

Txij li cov kev pabcuam nkag mus tau yog qhov kev xaiv raug cai rau cov apps uas xav kom cov xov tooj nkag tau yooj yim dua rau cov neeg siv uas xav tau, Google tsis xav txwv tsis pub nkag mus rau cov kev pabcuam no rau txhua lub apps. Kev txwv tsis pub siv rau cov apps rub tawm los ntawm nws lub khw thiab los ntawm cov khw muag khoom thib peb xws li F-Droid lossis Amazon App Store. Cov tuam txhab thev naus laus zis tau sib cav ntawm no tias cov khw no feem ntau pom cov apps uas lawv muab, yog li lawv twb muaj kev tiv thaiv.

Raws li ib pab pawg neeg tshawb fawb kev ruaj ntseg pom ThreatFabric, malware developers los ntawm pab pawg Hadoken tab tom ua haujlwm ntawm kev siv tshiab uas tsim cov malware qub uas siv cov kev pabcuam yooj yim kom nkag mus rau cov ntaub ntawv tus kheej. Txij li thaum tso cai rau cov apps rub tawm "sideways" yog v Androidu 13 nyuaj, cov malware muaj ob feem. Thawj lub app uas tus neeg siv nruab yog lub npe hu ua dropper, uas coj zoo li lwm yam app rub tawm los ntawm lub khw thiab siv tib API los teeb tsa cov pob khoom tom qab ntawd nruab "tiag" cov lej phem yam tsis muaj kev txwv ntawm kev pabcuam kev nkag mus tau.

Txawm hais tias tus malware tseem tuaj yeem hais kom cov neeg siv qhib cov kev pabcuam nkag mus tau rau sideloaded apps, cov kev daws teeb meem los ua kom lawv nyuaj. Nws yooj yim dua los tham cov neeg siv rau hauv kev ua kom cov kev pabcuam no nrog ib tus kais, uas yog qhov no ob chav whammy ua tiav. Pab pawg ntawm cov kws tshawb fawb sau tseg tias cov malware, uas lawv tau hu ua BugDrop, tseem nyob rau theem pib ntawm kev txhim kho thiab tam sim no nws hnyav "bugged" nws tus kheej. Hadoken pab pawg yav dhau los tuaj nrog lwm lub dropper (hu ua Gymdrop) uas kuj tau siv los kis malware, thiab tseem tsim Xenomorph banking malware. Cov kev pabcuam nkag mus tau yog qhov txuas tsis muaj zog rau cov lej tsis zoo no, yog li koj ua dab tsi, tsis txhob cia ib qho app nkag mus rau cov kev pabcuam no tshwj tsis yog tias nws yog ib qho app nkag tau (nrog rau kev zam ntawm Tasker, smartphone ua haujlwm automation app).

Niaj hnub no nyeem tshaj plaws

.