<br />
<b>Deprecated</b>:  Function create_function() is deprecated in <b>/home/hidefide/public_html/blog/wp-content/plugins/wr-pagebuilder/core/core.php</b> on line <b>127</b><br />
{"id":496,"date":"2017-12-20T15:48:16","date_gmt":"2017-12-20T15:48:16","guid":{"rendered":"https:\/\/icaruspressblog.wordpress.com\/?p=496"},"modified":"2019-04-17T11:39:36","modified_gmt":"2019-04-17T11:39:36","slug":"androids-are-people-too-botnets-not-just-for-pcs-anymore","status":"publish","type":"post","link":"https:\/\/hidefideas.com\/blog\/2017\/12\/20\/androids-are-people-too-botnets-not-just-for-pcs-anymore\/","title":{"rendered":"Androids are People, Too: Botnets not Just for PCs Anymore"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\" size-medium wp-image-498 alignright\" src=\"http:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/androidf6o.jpg?w=291\" alt=\"androidf6o\" width=\"291\" height=\"300\" srcset=\"https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/androidf6o.jpg 506w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/androidf6o-291x300.jpg 291w, https:\/\/hidefideas.com\/blog\/wp-content\/uploads\/2016\/03\/androidf6o-146x150.jpg 146w\" sizes=\"auto, (max-width: 291px) 100vw, 291px\" \/>We all know that botnets are nasty conflagrations of unsuspecting peers, all ruthlessly controlled by bot herders and their C&amp;C servers. And if there\u2019s any one thing that we\u2019ve learned about botnets, it\u2019s that they\u2019re the gold standard for anyone bent on unleashing mayhem on a world that\u2019s become far too reliant on interconnectivity. But up until now, botnets have generally been understood to be prevalent on Windows machines, with <a href=\"http:\/\/www.forbes.com\/sites\/andygreenberg\/2012\/04\/09\/apple-snubs-firm-who-discovered-mac-botnet-tries-to-cut-off-its-server-monitoring-infections\/\">Mac<\/a> and <a href=\"http:\/\/www.theregister.co.uk\/2011\/01\/19\/mac_linux_bot_vulnerabilities\/\">Linux<\/a> pulling up the rear as newbies to the party. And while it\u2019s true that both of the former platforms <a href=\"http:\/\/www.itworld.com\/security\/77499\/first-linux-botnet\">have presented themselves as candidates<\/a> for a career <!--more-->in botism, the sheer number of Windows PCs out there makes Windows the natural platform of choice. After all, that\u2019s what botnets are all about. Numbers.<\/p>\n<p>But our world may be changing quicker than we\u2019d like it to, if a new finding by security firm <a href=\"https:\/\/www.lookout.com\/\">Lookout<\/a> has any modicum of truth (spoiler alert: it does). In a blog post on December 17, <a href=\"https:\/\/blog.lookout.com\/blog\/2012\/12\/17\/security-alert-spamsoldier\/\">Derek Halliday at Lookout blogged<\/a> that there\u2019s a new zombie master at the party, and it doesn\u2019t wear the colors of Windows, Mac OS, or Linux. In fact, it doesn\u2019t even occupy a desktop. As several media outlets are reporting, an Android botnet sporting the open-source colors of the ubiquitous operating system has been discovered gracing phones and tablets everywhere. In fact, the botnet has \u201calready been spotted on all major US carriers and has the potential to make a big impact at the network level if it isn\u2019t dealt with soon,\u201d <a href=\"http:\/\/thenextweb.com\/google\/2012\/12\/18\/android-botnet-found-on-all-major-us-carriers-sends-thousands-of-spam-texts-to-spread-like-a-virus\/\">according to thenextweb.com<\/a>.<\/p>\n<p>Lookout detected the problem on December 3, while working in conjunction with an unnamed carrier. Dubbed \u201cSpamSoldier,\u201d (how cool is that? Just saying) the botnet is currently limited to propagating through SMS. \u201cSpamSoldier is primarily spread through SMS messages that advertise free versions of popular paid games like&nbsp;<em>Need for Speed<\/em>&nbsp;or<em>&nbsp;Angry Birds Space<\/em>. Once the user clicks on a link from one of these SMS messages, their phone downloads an application that claims to install the game. By opening that \u2018installer\u2019 app, the user is activating the SpamSoldier Trojan.\u201d<\/p>\n<p>According to thenextweb.com, the infection is delivered in any number of SMS spam messages, and they cite these examples:<\/p>\n<p><em>\u201cYou\u2019ve just won a $1000 Target gift card but only the 1st 1000 people that enter code 7777 at hxxp:\/\/holyoffers.com can claim it!<\/em><\/p>\n<p>or,<\/p>\n<p><em>Download Grand Theft Auto 3 &amp; Need for Speed Most Wanted for Android phones for free at hxxp:\/\/trendingoffers.com for next 24hrs only!\u201d<\/em><\/p>\n<p>Once installed, SpamSoldier removes its icon from the launcher and may even install the game that enticed the user to click, in order to cover its tracks. It goes to work right away, connecting to the Command and Control server to get its orders, going to work by spreading joy throughout the universe in the form of SMS messages. The C&amp;C server gives the zombie a list of 100 numbers to spam and a spam message to deliver. Once it\u2019s done its job, it talks to the C&amp;C again, repeating the process until the application is closed or the C&amp;C server fails to respond. So right away, infected users can expect to incur costs for vast amounts of text messages, an unwelcome surprise, even when it\u2019s not Christmastime and your credit card isn\u2019t maxed out.<\/p>\n<p>Lookout downplays the impact of this initial finding, but cautions that it could, and probably will, get worse. \u201cIt appears that the distribution of this malware is limited. Overall detections remain low but we\u2019ve observed instances on all major US carriers. The potential impact to mobile networks may be significant if the threat goes undetected for a long period of time. The primary negative impact appears to be the large amount of SMS messages sent and the potential this has to result in charges to the user and\/or a slowdown of the carrier\u2019s network.\u201d<\/p>\n<p>The discovery of SpamSoldier only tells us what we already knew: Android is a breeding ground for the next wave of spam and security threats. Botnets are a numbers game. The more zombies in the mesh, the broader the possibilities, and recent reports show that Google\u2019s Android is well on its way to turning the world into a Will Smith kind of world, with robots turning against their makers in a revolution that will make the storming of the Bastille look like a day at the amusement park. Okay, that last part is pure fantasy, but here\u2019s what we do know: <a href=\"http:\/\/news.cnet.com\/8301-1035_3-57510994-94\/google-500-million-android-devices-activated\/\">Android is everywhere<\/a>. That this was an SMS campaign shouldn\u2019t give comfort to IT and networking professionals, when you consider the opportunities that these email-aware devices pose to bot herders.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>We all know that botnets are nasty conflagrations of unsuspecting peers, all ruthlessly controlled by bot herders and their C&amp;C servers. And if there\u2019s any&hellip; <\/p>\n","protected":false},"author":3,"featured_media":498,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[13,14],"tags":[11,9,10,8,7],"class_list":["post-496","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-security","category-spam","tag-allspammedup","tag-bot","tag-botnet","tag-malware","tag-spam","jsn-master"],"_links":{"self":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/496","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/comments?post=496"}],"version-history":[{"count":2,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/496\/revisions"}],"predecessor-version":[{"id":1775,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/posts\/496\/revisions\/1775"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media\/498"}],"wp:attachment":[{"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/media?parent=496"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/categories?post=496"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/hidefideas.com\/blog\/wp-json\/wp\/v2\/tags?post=496"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}