Tecb-Beats features its 100th post and we would like to thank all of our viewers and our subscribers for making us commit the way we have. In only three short weeks, Tech-Beats writes its 100th post with over 40 followers and over a thousand unique views and we gave the information we did in such a manner because of the wonderful response we got.
For our 100th post, we feature the two administrators writing a combined post. Hopefully, you’ll find them just as interesting.
Is making Android Trojans that easy?
It seems that every few weeks a new crop of malicious Android apps turns up in the market. Sometimes Google just removes them from the market; other times it uses the “kill switch” to disable already-downloaded apps from Android devices around the world.
Typically these threats are perfectly ordinary-looking apps. Like the Trojan Horse of legend, they enter your device freely, with your permission. Once installed they do something nasty. Some users are shocked that Google can remove stuff from your Android phone remotely. I’m more alarmed at the ridiculous ease with which malicious coders can create Trojans for Android.
At last week’s Next@Norton event, Symantec researchers presented a dazzling array of information about the current state of mobile security and the mobile malware landscape. Eric Chien, Technical Director for Security Response, revealed the absurdly simple steps a malefactor uses to create a brand-new Trojan by creating one right in front of the audience. Don’t worry; his sample app never left the room.
Here are the five simple steps Chien demonstrated:
One. Start by downloading a free app. You can choose any app at all, but of course you’ll want to pick something that will draw plenty of downloads.
Two. The language compilers that create applications on your PC take textual source code and convert it into assembly language that the CPU can read and process. It’s a one-way translation; there’s no way to go from the final executable file back to the source code. Android apps are written in Java, though, and that means that you can decompile them back to the original source code using simple, easily-available tools. For the next step, decompile your target app.
Three. The third step is a little tricky. You’ll need to obtain Java source code that does something nasty, like sending personal information from the device to a third party. For the demonstration, Chien used a known threat called Android.Geinimi.
Four. Adding the Trojan code is absurdly simple. You copy it into the folder containing the existing source code, make a small change in the manifest to run the Trojan code before the rest of the app, and edit the permissions to give the Trojanized app free access to the entire device. While you’re at it, tweak the app’s name. Chien added “FREE!” to the name for his demo.
Five. Compile the modified app and upload it to the market. You’re done!
Of course, malicious apps don’t last long in the Android Market. If you really want to spread a dangerous program, you’re better off uploading it in China, where there is no official Android market. In fact, virtually all of the examples referenced in Chien’s presentation surfaced in the free-for-all markets of China.
Not planning to do this yourself? Good! But I’m sure that like me you’re shocked at how easily someone with bad intentions can create a brand new Android Trojan. It’s time to look into mobile security for your Android device.
Google still has bugs every now & then
Today, writes Akshay, I wanted to see the Google News for US , but to my surprise I was always shown up page for Google Singapore News. However, I am logging in from Singapore Geography but even though I have changed my URL to point to Google US news , I am still landed up with the page having Singapore news.
I tried and tested this for Google India News and it seemed to work fine and I was able to see Google India news only.
We at Tech Beats have already shared this bug with Google and they still have to respond back for the same. This states that even the big boys in tech can have such small flaws in there implementations.
To respond to the link follow this url : http://www.google.com/support/forum/p/news/thread?tid=054c0918842765ce&hl=en
We hope sincerely that Google corrects this error soon so that we can see Google US news from Singapore as well.