Rogue Android app texts humiliating messages
Real app's maker threatens to sue security firm for blogging about threat
Computerworld - Android users face a new threat, a rogue app that tells all their friends they pirated the program, a Symantec security manager said today.
The app is a fake copy of the legitimate "Walk and Text," software that uses the smartphone's camera to show what's in front of the user while she simultaneously walks and texts.
Walk and Text is available not only on Google's official Android Market app store, but also on numerous file-sharing sites. It's one of several mobile apps created by Georgi Tanmazov, the CEO of Incorporate Apps.
On the Android Market, Walk and Text is priced at $1.54.
The Trojanized version of the app includes malicious code that pilfers personal data from the phone -- the phone number, the device's unique identifier and more -- and sends it to a remote anonymous server.
That's not new, said John Engles, a group product manager with Symantec's security response team. What is new, at least on mobile devices, is the rogue app's texting of an embarrassing message to each contact in the phone's address book.
"Hey, just downlaoded [sic] a pirated App off the Internet," the message reads. "Walk and Text for Android. Im [sic] stupid and cheap, it costed [sic] only 1 buck. Don't steal like I did!"
When the app is run, a final message appears on the smartphone's screen that states, "We really hope you learned something from this." That message is accompanied by a an offer to buy the legitimate program from the Android Market.
According to Symantec, the rogue app -- which the company pegged as "Android.Walkinwat" and identified as a Trojan horse -- is similar to other fake Android apps that host malware. "They took the legitimate app, decompiled it, added the malicious code, recompiled it and then placed it on small Android side markets," said Engles.
Although Engles said the Trojan maker's motivation was unclear, he said it was most likely created by anti-piracy vigilantes. But it's also possible that the creator of Android.Walkinwat wanted to undermine the reputation of the legitimate Walk and Text application.
Engles called Android.Walkinwat "fairly benign," in part because it doesn't appear to have elements common to other mobile malware, such as a backdoor that allows secret downloads of other code.
"And it doesn't seem to be very popular or widespread," said Engles. Symantec has classified the rogue app/Trojan as a "Low" threat.
Installing the Trojanized app could result in higher texting bills, depending on the number of contacts in a victimized smartphone, and where those contacts lived. "This could cost you some money," said Engles.
- Gartner Magic Quadrant for Mobile Application Development Platforms As unprecedented numbers of enterprises build mobile applications, the mobile application development platform market continues to grow and evolve rapidly.
- The Total Economic Impact of IBM's Worklight Platform Mobile is the fastest growing consumer technology in history. As enterprises build apps to engage these new users they are facing increased complexity...
- Improve Your Mobile Application Security with IBM Worklight IBM® Worklight helps organizations extend their business across multiple mobile devices. It provides an open, comprehensive and advanced mobile application platform to help...
- Unlock the Value of Enterprise Mobility Download this guide and learn how to manage the secure deployment of enterprise mobile apps and data, while still encouraging the levels of...
- It's Chaos Out There Worried about your mobile apps? You should be; it's chaos out there. Check out this humorous video and see if you can recognize...
- Cloud Knowledge Vault Learn how your organization can benefit from the scalability, flexibility, and performance that the cloud offers through the short videos and other resources... All Mobile Apps White Papers | Webcasts
Our new weekly Consumerization of IT newsletter covers a wide range of trends including BYOD, smartphones, tablets, MDM, cloud, social and what it all means for IT. Subscribe now and stay up to date!