Monday, June 13, 2011

Google pulls more malware from Android Market

NC State researcher finds stealthy attack code inside bogus 'Angry Birds' apps

Computerworld - Google removed more malware-infected applications from its Android Market last week, according to a security researcher who reported the rogue software to the company.

On June 5, Google yanked 10 apps from the market after Xuxian Jiang, an assistant professor in computer science at North Carolina State University, reported his findings to the company.

Jiang published an analysis of the malicious code, dubbed "Plankton," in a blog post last Thursday.

Andrew Brandt, lead threat research analyst at Webroot, has also dug into Plankton.

"It has the ability to remotely access a command-and-control [C&C] server for instructions, and upload additional payloads," Brandt said in an interview Friday. "It uses a very stealthy method to push any malware it wants to phone."     Read More