“Gooligan” Android Malware Compromised 1 Million Google Accounts by Bogdan Popa.
From the post:
Security experts at Check Point have discovered a new very aggressive form of Android malware that already compromised no less than 1 million Google accounts and which can infect approximately 74 percent of the Android phones currently on the market.
The firm warns that the malware which they call Gooligan is injected into a total of 86 Android apps that are delivered through third-party marketplaces (you can check the full list of apps in the box at the end of the article). Once installed, these apps root the phone to get full access to the device and then attempt to deploy malicious software which can be used to steal authentication tokens for Google accounts.
This pretty much gives the attackers full control over the targeted Google accounts, and as long as vulnerable phones have Gmail, Google Drive, Google Chrome, YouTube, Google Photos, or any other Google app that can be used with an account, there’s a big chance that the attack is successful.
…(emphasis in original)
You can check to see if your account has been breached: Gooligan Checker.
The article also lists 86 Goolian infected apps, in no particular order. (Rhetorical questions: Why do people make it difficult for readers? What is their payoff?)
To save you from digging through and possibly missing an infected app, here are the 86 Googlian infected apps in dictionary order:
- แข่งรถสุดโหด
- Assistive Touch
- ballSmove_004
- Battery Monitor
- Beautiful Alarm
- Best Wallpapers
- Billiards
- Blue Point
- CakeSweety
- Calculator
- Chrono Marker
- Clean Master
- Clear
- com.browser.provider
- com.example.ddeo
- com.fabullacop.loudcallernameringtone
- Compass Lite
- com.so.itouch
- Daily Racing
- Demm
- Demo
- Demoad
- Detecting instrument
- Dircet Browser
- Fast Cleaner
- Fingerprint unlock
- Flashlight Free
- Fruit Slots
- FUNNY DROPS
- gla.pev.zvh
- GPS
- GPS Speed
- Hip Good
- HotH5Games
- Hot Photo
- Html5 Games
- Kiss Browser
- KXService
- Light Advanced
- Light Browser
- memory booste
- memory booster
- Memory Booster
- Minibooster
- Multifunction Flashlight
- Music Cloud
- OneKeyLock
- Pedometer
- Perfect Cleaner
- phone booster
- PornClub
- PronClub
- Puzzle Bubble-Pet Paradise
- QPlay
- SettingService
- Sex Cademy
- Sex Photo
- Sexy hot wallpaper
- Shadow Crush
- Simple Calculator
- Slots Mania
- Small Blue Point
- SmartFolder
- Smart Touch
- Snake
- So Hot
- StopWatch
- Swamm Browser
- System Booster
- Talking Tom 3
- TcashDemo
- Test
- Touch Beauty
- tub.ajy.ics
- UC Mini
- Virtual
- Weather
- Wifi Accelerate
- WiFi Enhancer
- Wifi Master
- Wifi Speed Pro
- YouTube Downloader
- youtubeplayer
- 小白点
- 清理大师