Unmasking the 'Goldoson' Malware: Over 100 Millions Android Users at Risk

Android Users Malware, Screen of Android Phone in the dark

Cybersecurity researchers from McAfee have found the Goldoson Malware hidden away in 60 applications scattered around the Google Play store and South Korea’s One Store, with the applications being downloaded 100 million times on Google and another 8 million times on the One Store.

Researchers have discovered last week a software library called “Goldoson” that contained the victim's downloaded application list, WiFi history, information about connected Bluetooth devices, and also the victim's GPS location.

When a device downloads one of the infected apps, the malware library registers the app and receives its configuration from a remote server with an obfuscated domain. Once received the device can perform advertisement fraud by clicking ad links in the background without the user's consent. Data gathered from the infected device uploads private user information every two days by default but can be remotely changed by the threat actor.

McAfee has alerted Google and owners of the developed app about the hidden malware tucked away. The app developers have either removed the malware library or completely shut down the app in compliance. Most users running Andriod 11 and above, were mostly safe from potential data theft although 10% of those devices were compromised.

Click Here to view full story and list of infected apps

 

Your Security is our Priority

Your friendly Support Team

The Computer Department Logo

Speak to us about all your computer needs

This is Part of our Cyber Security awareness educational campaign. Through this training, you will learn awareness and key principles, and best practices to protect yourself, your organisation, and the public from cyber attackers. You will also be equipped with the knowledge to identify potential threats and take action before any damage can occur.

 
Previous
Previous

Hackers exploiting 'PaperCut' Software Vulnerabilities Put 70,000+ Companies at Risk

Next
Next

Cyber-Attacks on Human Rights Activists via iOS 15 and 16