{"id":72496,"date":"2011-08-26T07:06:37","date_gmt":"2011-08-26T07:06:37","guid":{"rendered":"https:\/\/localhost\/wordpress\/?p=72496"},"modified":"2011-08-26T07:06:37","modified_gmt":"2011-08-26T07:06:37","slug":"android-malware-gain-access-to-root","status":"publish","type":"post","link":"https:\/\/www.quickheal.com\/blogs\/android-malware-gain-access-to-root\/","title":{"rendered":"Android malware gains root access"},"content":{"rendered":"<p>A new malware affecting the latest version of Android operating system (2.3 &#8211; Gingerbread) is now out in the wild and masquerading as an app featuring some &#8220;Beauty of the Day&#8221; photos.<\/p>\n<p>The package I downloaded uses the following permissions:<br \/>\nandroid.permission.READ_PHONE_STATE<br \/>\nandroid.permission.READ_LOGS<br \/>\nandroid.permission.DELETE_CACHE_FILES<br \/>\nandroid.permission.ACCESS_CACHE_FILESYSTEM<br \/>\nandroid.permission.WRITE_SECURE_SETTINGS<br \/>\nandroid.permission.ACCESS_NETWORK_STATE<br \/>\nandroid.permission.INTERNET<br \/>\nandroid.permission.WRITE_EXTERNAL_STORAGE<br \/>\nandroid.permission.MOUNT_UNMOUNT_FILESYSTEMS<br \/>\nandroid.permission.READ_OWNER_DATA<br \/>\nandroid.permission.WRITE_OWNER_DATA<br \/>\nandroid.permission.WRITE_SETTINGS<br \/>\ncom.android.launcher.permission.INSTALL_SHORTCUT<br \/>\ncom.android.launcher.permission.UNINSTALL_SHORTCUT<br \/>\nandroid.permission.RECEIVE_BOOT_COMPLETED<br \/>\nandroid.permission.RESTART_PACKAGES<\/p>\n<p>Using Gingerbreak, which is the the latest exploit for gaining root access to Gingerbread, the malware gathers information about the infected device and sends it to remote servers. In addition to exfiltrating the IMEI, phone number and SIM serial no., GingerMaster creates a backdoor root shell stored in the system partition in an attempt to survive after software upgrades to allow an attacker access to the device.<\/p>\n<p><a href=\"https:\/\/www.quickheal.com\/\">Quick Heal<\/a> detects these malware files as <strong>Android.Lotoor.B<\/strong> and protects its users.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>A new malware affecting the latest version of Android operating system (2.3 &#8211; Gingerbread) is now out in the wild and masquerading as an app featuring some &#8220;Beauty of the Day&#8221; photos. The package I downloaded uses the following permissions: android.permission.READ_PHONE_STATE android.permission.READ_LOGS android.permission.DELETE_CACHE_FILES android.permission.ACCESS_CACHE_FILESYSTEM android.permission.WRITE_SECURE_SETTINGS android.permission.ACCESS_NETWORK_STATE android.permission.INTERNET android.permission.WRITE_EXTERNAL_STORAGE android.permission.MOUNT_UNMOUNT_FILESYSTEMS android.permission.READ_OWNER_DATA android.permission.WRITE_OWNER_DATA android.permission.WRITE_SETTINGS com.android.launcher.permission.INSTALL_SHORTCUT com.android.launcher.permission.UNINSTALL_SHORTCUT android.permission.RECEIVE_BOOT_COMPLETED [&hellip;]<\/p>\n","protected":false},"author":22,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[55,24,60],"tags":[56,57,63,59,61,38],"class_list":["post-72496","post","type-post","status-publish","format-standard","hentry","category-android","category-malware","category-smartphone","tag-android-security","tag-droid-defense","tag-gingerbread","tag-mobile-devices","tag-smartphone-security","tag-vulnerability"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts\/72496"}],"collection":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/users\/22"}],"replies":[{"embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/comments?post=72496"}],"version-history":[{"count":0,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/posts\/72496\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/media?parent=72496"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/categories?post=72496"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.quickheal.com\/blogs\/wp-json\/wp\/v2\/tags?post=72496"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}