Adware on Mobile Devices an Evolving Privacy Threat
来源:互联网 发布:数据库系统概念 6 pdf 编辑:程序博客网 时间:2024/05/21 00:18
Potentially Unwanted Programs (PUPs) are often legitimate software that pose a risk to users’ privacy or systems. A reasonably secure–or privacy-minded–user may want to be informed of the presence of certain PUPs and in some cases remove them. One very common type of PUP is adware, which exists to make revenue through advertising. Some adware is merely annoying but others could ignore or violate a user’s privacy by collecting and transmitting sensitive information to others without the user’s consent. Adware is well-known in the PC world and is becoming more prevalent now on mobile platforms (due to the fact that more developers are able to distribute their own applications from a central source like the Android Market).
The recent PUP Toplank (a.k.a. Counterclank) is an example of how aggressive mobile advertising in the Android world can be. The basic installation behaviors may be bad enough for some users. For example, Toplank adds bookmarks and home-screen shortcuts and makes home-page modifications without adequately informing the user or gaining consent to do so. More disturbing is what it does after it is installed. Recently, during the analysis of suspicious live wallpaper available in the Android Market, I found an advertisement module similar to Toplank’s in the sense that, once the PUP executes, it adds a shortcut in the home screen without the user’s consent:
However, at the same time in the background the following sensitive information is sent to the remote server ad.leadboltapps.net:
In addition to the “normal” sensitive data (OS version, IMEI, geographical location, and phone number) collected by several mobile-advertisement SDKs, this PUP also collects and sends the IP address of the device (which could be internal if the device is connected via network address translation or external if it is using the mobile network). This information, along with the exact identification of the device with the IMEI, could represent a privacy violation to some users. In addition, the developer does not clearly state in the Android Market that the wallpaper is ad supported:
The developer offers an option in Settings to disable notification ads. However, even if the option is disabled, the data has already been leaked and the user can do nothing to stop it.
Adware for mobile devices is constantly evolving and becoming very aggressive, invasive, and even dangerous to our privacy. If you have enabled PUP detection (which is enabled by default), then McAfee Mobile Security for Android detects this adware as Android/LdBolt.A.
http://blogs.mcafee.com/mcafee-labs/adware-on-mobile-devices-an-evolving-privacy-threat
- Adware on Mobile Devices an Evolving Privacy Threat
- PageRank on an Evolving Graph(论文粗读)
- Twitter, an Evolving Architecture
- Programming Mobile Devices: An Introduction for Practitioners
- Video Players on Windows Mobile devices
- Detect Orientation Change on Mobile Devices
- 研读:ARMageddon: Cache Attacks on Mobile Devices
- Serializing data on mobile devices with protobuf on C#
- ShuffleNet: An Extremely Efficient Convolutional Neural Network for Mobile Devices
- Privacy Policy:Mobile Security
- How To Make Your Websites Faster On Mobile Devices
- TrustICE: Hardware-assisted Isolated Computing Environments on Mobile Devices
- 研读:Viola:Trustworthy Sensor Notifications for Enhanced Privacy on Mobile Systems
- TaintDroid: An Information-Flow Tracking System for Realtime Privacy Monitoring on Smartphones
- TaintDroid: An Information-Flow Tracking System for Realtime Privacy Monitoring on Smartphones
- threat
- ShuffleNet: An Extremely Efficient Convolutional Neural Network for Mobile Devices的理解
- Reading Note: ShuffleNet: An Extremely Efficient Convolutional Neural Network for Mobile Devices
- 静态文本控件的使用
- nfs 服务安装
- WordPress视频主题 VideoPlus
- 一道算法题——合并有交集的集合
- Ext前台开发
- Adware on Mobile Devices an Evolving Privacy Threat
- 收藏微软面试智力题
- 在protel下进行阴阳板拼板
- 抽象工厂模式
- 吐槽 isap/ 转dinic
- hadoop状态分析系统chukwa
- SIP: Confusing Early Media and Early Offer
- 实现隔行变色效果升级以及实现表格全选、反选、删除效果
- SAP BW PA_特征数据的加载——视频学习笔记11