Tuesday, March 9, 2021
  • Setup menu at Appearance » Menus and assign menu to Top Bar Navigation
Advertisement
  • AI Development
    • Artificial Intelligence
    • Machine Learning
    • Neural Networks
    • Learn to Code
  • Data
    • Blockchain
    • Big Data
    • Data Science
  • IT Security
    • Internet Privacy
    • Internet Security
  • Marketing
    • Digital Marketing
    • Marketing Technology
  • Technology Companies
  • Crypto News
No Result
View All Result
NikolaNews
  • AI Development
    • Artificial Intelligence
    • Machine Learning
    • Neural Networks
    • Learn to Code
  • Data
    • Blockchain
    • Big Data
    • Data Science
  • IT Security
    • Internet Privacy
    • Internet Security
  • Marketing
    • Digital Marketing
    • Marketing Technology
  • Technology Companies
  • Crypto News
No Result
View All Result
NikolaNews
No Result
View All Result
Home Internet Security

New ransomware masquerades as COVID-19 contact-tracing app on your Android device

June 24, 2020
in Internet Security
New ransomware masquerades as COVID-19 contact-tracing app on your Android device
586
SHARES
3.3k
VIEWS
Share on FacebookShare on Twitter

A new strain of ransomware is being deployed in attacks created off the back of the release of contact-tracing apps during the novel coronavirus pandemic. 

Researchers from ESET said this week that the ransomware emerged only a few days after Health Canada announced the release of COVID Alert, which will first be tested in Ontario before rolling out nationwide.

You might also like

Ezviz C3X outdoor security camera review: Simple setup, superb features Review

Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks

McAfee sells its enterprise business to private equity group as it focuses on consumer security

While the official app is not due to be made available to mobile device users until next month at the earliest, cyberattackers are trying to capitalize on the government’s announcement with an Android package of their own — marketed as Canada’s official COVID-19 tracing app, but hiding a malicious secret. 

According to the cybersecurity firm, two websites offered what appeared to be Health Canada’s tracing app. However, the now-defunct domains — tracershield[.]ca and covid19tracer[.]ca — were actually hosting APKs that, when downloaded, installed the CryCryptor ransomware on Android devices. 

The ransomware first came to ESET’s attention by way of a tweet by a Twitter user under the handle @ReBensk. While the alert warned that the APKs were hiding a banking Trojan, upon further examination, the malware turned out to be the new ransomware. 

See also: New WastedLocker ransomware demands payments of millions of USD

If an Android user downloads the APK from the fraudulent domains and installs the app, the malware requests access to files and begins the task of encrypting content on the device with specific extensions, including .PNG. 

.ENC is appended to compromised files, which are encrypted using AES and a 16-character key. A text file making a ransom demand is also left in each directory where encrypted files are stored. 

ESET has been able to create a decryption tool for the current version of the Android malware which has been made available on GitHub. 

It was possible to do so as the ransomware takes advantage of a bug categorized as “Improper Export of Android Components” (CWE-926) by MITRE. This issue allows installs apps to launch exported services, but in turn, this meant that a tool could be created that launches CryCryptor’s own decryption functions. 

CNET: Republicans push bill requiring tech companies to help access encrypted data

Furthermore, the ransomware was traced back to GitHub after its source code was made public on 11 June. According to ESET, the developer — who named the open source malware CryDroid — disguised the release as a research project. 

“We dismiss the claim that the project has research purposes — no responsible researcher would publicly release a tool that is easy to misuse for malicious purposes,” ESET says.

TechRepublic: Only 31% of Americans concerned with data security, despite 400% rise in cyberattacks

As the team was not convinced, GitHub has been made aware of the code’s true nature. 

Earlier this month, researchers said a new ransomware variant that appeared on the scene in May is being exclusively used in attacks against US companies. Thought to be the work of Evil Corp, the WastedLocker ransomware typically demands ransom payments reaching millions of dollars. 

Previous and related coverage


Have a tip? Get in touch securely via WhatsApp | Signal at +447713 025 499, or over at Keybase: charlie0



Credit: Zdnet

Previous Post

GitHub Open-Sources A Series Of GitHub Actions For Automating ML

Next Post

Google's new ML Kit SDK keeps all machine learning on the device

Related Posts

Ezviz C3X outdoor security camera review: Simple setup, superb features Review
Internet Security

Ezviz C3X outdoor security camera review: Simple setup, superb features Review

March 9, 2021
Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks
Internet Security

Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks

March 9, 2021
McAfee sells its enterprise business to private equity group as it focuses on consumer security
Internet Security

McAfee sells its enterprise business to private equity group as it focuses on consumer security

March 9, 2021
Everything you need to know about Microsoft Exchange Server hack
Internet Security

Everything you need to know about Microsoft Exchange Server hack

March 8, 2021
Bill establishing cyber abuse takedown scheme for adults enters Parliament
Internet Security

eSafety defends detail of Online Safety Bill as the ‘sausage that’s being made’

March 8, 2021
Next Post
Google’s new ML Kit SDK keeps all machine learning on the device

Google's new ML Kit SDK keeps all machine learning on the device

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Recommended

Plasticity in Deep Learning: Dynamic Adaptations for AI Self-Driving Cars

Plasticity in Deep Learning: Dynamic Adaptations for AI Self-Driving Cars

January 6, 2019
Microsoft, Google Use Artificial Intelligence to Fight Hackers

Microsoft, Google Use Artificial Intelligence to Fight Hackers

January 6, 2019

Categories

  • Artificial Intelligence
  • Big Data
  • Blockchain
  • Crypto News
  • Data Science
  • Digital Marketing
  • Internet Privacy
  • Internet Security
  • Learn to Code
  • Machine Learning
  • Marketing Technology
  • Neural Networks
  • Technology Companies

Don't miss it

Ezviz C3X outdoor security camera review: Simple setup, superb features Review
Internet Security

Ezviz C3X outdoor security camera review: Simple setup, superb features Review

March 9, 2021
Operationalizing AI – Introduction to the ModelOps Pipeline
Data Science

Operationalizing AI – Introduction to the ModelOps Pipeline

March 9, 2021
SCA invests in Australian AI and machine learning company
Machine Learning

SCA invests in Australian AI and machine learning company

March 9, 2021
How Image Annotation Helps in AI Development for Agriculture Sector? | by ANOLYTICS
Neural Networks

How Image Annotation Helps in AI Development for Agriculture Sector? | by ANOLYTICS

March 9, 2021
Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks
Internet Security

Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks

March 9, 2021
Malware Can Exploit New Flaw in Intel CPUs to Launch Side-Channel Attacks
Internet Privacy

Malware Can Exploit New Flaw in Intel CPUs to Launch Side-Channel Attacks

March 9, 2021
NikolaNews

NikolaNews.com is an online News Portal which aims to share news about blockchain, AI, Big Data, and Data Privacy and more!

What’s New Here?

  • Ezviz C3X outdoor security camera review: Simple setup, superb features Review March 9, 2021
  • Operationalizing AI – Introduction to the ModelOps Pipeline March 9, 2021
  • SCA invests in Australian AI and machine learning company March 9, 2021
  • How Image Annotation Helps in AI Development for Agriculture Sector? | by ANOLYTICS March 9, 2021

Subscribe to get more!

© 2019 NikolaNews.com - Global Tech Updates

No Result
View All Result
  • AI Development
    • Artificial Intelligence
    • Machine Learning
    • Neural Networks
    • Learn to Code
  • Data
    • Blockchain
    • Big Data
    • Data Science
  • IT Security
    • Internet Privacy
    • Internet Security
  • Marketing
    • Digital Marketing
    • Marketing Technology
  • Technology Companies
  • Crypto News

© 2019 NikolaNews.com - Global Tech Updates