Android malware used to mask online fraud, says expert

by Carol~ Moderator - 5/4/12 3:39 PM

In Reply to: NEWS - May 04, 2012 by Carol~ Moderator

Android malware being automatically distributed from hacked websites looks like it's being used to mask online purchases, and could be part of a fraud gang's new push into mobile, researchers said today.

"The malware essentially turns your Android phone into a tunnel that can bounce network traffic off your phone," said Kevin Mahaffrey, co-founder and CTO of Lookout Security, a San Francisco-based firm that focuses on Android.

Lookout first published information about the new malware, dubbed "NotCompatible," on Wednesday. Further analysis, however, has revealed the most likely reason why cyber criminals are spreading the malware.

"There are a couple of ways they can profit from this," said Mahaffrey in an interview. "One is general online fraud, the other is targeted attacks against enterprises. We haven't seen any evidence [of the latter], and have confirmed that it is engaged in online purchasing activity."

Once installed, NotCompatible turns an infected Android device into a proxy, through which hackers can then direct data packets, in essence disguising the real source of that traffic by using the compromised devices as middlemen.

Continued : http://www.computerworld.com/s/article/9226899/Android_malware_used_to_mask_online_fraud_says_expert

Related: Android malware opens back door to the intrane

From the Lookout Blog: Update: Oh no, my phone bought tickets to the One Direction concert