Post
Topic
Board Beginners & Help
Re: {Warning}: New "Alien" malware targets banking and crypto apps
by
stompix
on 24/09/2020, 10:36:26 UTC
What pisses me off on some of those researches about viruses and malware is they forget to add one critical fact, how it happens

Quote
ThreatFabric didn't include details about how Alien makes its way onto users' devices, primarily because this varies based on how the Alien MaaS customers (other criminal groups) chose to distribute it.
"A lot of it seems distributed via phishing sites, for example malicious page tricking the victims into downloading fake software updates or fake Corona apps (still a common trick at the moment)," Gaetan van Diemen, a malware analyst at ThreatFabric, told ZDNet.

All of these shady Alien-tainted apps can be easily spotted as they often require users to grant them access to an admin user or to the Accessibility service.

So, don't download crappy apps and don't give an app that tells you what to eat to lose 500 pounds admin privileges.
Basically, the same story as always, be careful what you insall on your devices!

The list is big and I've seen some more names there that are worrisome: WhatsApp and Mycelium.
WhatsApp because some think that since "it's encrypted" they can send whatever sensitive info.

There is one worse than that, gmail! Lose control over your email and good luck recovering all the accounts linked to it.