Cybersecurity researchers have discovered that an Ad-loading malware is being built into the firmware and operating system of some new tablets and phones from three major manufacturers.
Surprise! Nowadays a malware could be one of the features of your fancy new Android tablet. According to the same researchers that made the discovery, this malware isn’t just pre-loaded: it’s fully baked in.
Some phones and tablets from ZTE, Archos, and myPhone are coming with malware called Cosiloon pre-installed.
Companies and individual people must take certain precautions against this growing phenomenon of cyber attacks; they should implement at least a cybersecurity solution, like an antivirus, to protect their systems. Necessary things like regularly updating operating systems and other firmware, using antivirus for Windows, an antivirus for Mac, or antivirus for Android, depending on which OS your device is using. Companies must also hire professional cybersecurity firms to do regular checkups to their internal network a couple of times per year. These checkups must always include a penetration test and various ethical hacking test.
After running a malware analysis on it, researchers found that It’s an ad loader. It loads ads rather than steals information; it’s also impossible to entirely eradicate since it’s built into the firmware of the infected devices.
Two “dropper” apps load ads over Web pages or games:
-one of the droppers is built into the firmware of the devices
-the other is completely integrated into the operating system
Once they’re active, they download ad presentation software that is highly sophisticated and thoroughly obfuscated, making the entire operation impossible to eradicate and very difficult to mitigate.
Researchers found the malware on more than 18,000 devices in more than 100 countries. Google does not certify most of the devices affected.
Google said that as long as the malware is built into the firmware, there’s very little it can do.
Keep in mind that every device represents a network entry point or a valuable data bank that must be protected by at least cybersecurity solution like an antivirus. Depending on which OS your machine is running, install an antivirus for Windows, an antivirus for Mac, or antivirus for Android for total protection. Companies must take an extra step and hire a professional cybersecurity firm that will run various cybersecurity tests on your company’s network to implement only the best possible cybersecurity solution. Always opt for a package that includes at least a penetration test and ethical hacking test. For companies that exist 100% online, we recommend the using of cyber-secured web hosting services.