• Home
  • About Us
  • Seo
  • Contact Us
  • Privacy Policy
  • Affiliate Product Table Generator
  • Web Stories

Fresh News Hub

Get Something real about News

  • Mobile News
  • Android
  • IPhone
  • Reviews
  • SEO
  • Smart Phones
  • Solar Charger
  • Accessories
  • Top Apps
  • Gadgets
You are here: Home / Tech News / ALERT! Microsoft warns of dangerous Android malware on your phone that intercepts OTP, SMS too

ALERT! Microsoft warns of dangerous Android malware on your phone that intercepts OTP, SMS too

July 4, 2022 By Fresh News Hub Leave a Comment

Microsoft has warned of toll fraud malware on Android phones that can drain the wallet of the user. Here is what you need to know.

Is there malware on your phone? Microsoft has warned users of an Android malware called “toll fraud” that can drain the money in your wallet. Compared to other subcategories of billing fraud, which include SMS fraud and call fraud, toll fraud has unique behavior. SMS fraud or call fraud use a simple attack flow to send messages or calls to a premium number, while “toll fraud” has a complex multi-step attack flow that malware developers continue to improve, Microsoft said in a blog post.

“Toll fraud malware, a subcategory of billing fraud in which malicious applications subscribe users to premium services without their knowledge or consent, is one of the most prevalent types of Android malware – and it continues to evolve,” the blog post read.

Also read: Looking for a smartphone? To check mobile finder click here.

The company warned by saying, “for example, we saw new capabilities related to how this threat targets users of specific network operators. It performs its routines only if the device is subscribed to any of its target network operators. It also, by default, uses cellular connection for its activities and forces devices to connect to the mobile network even if a Wi-Fi connection is available.”

Also Read: Shocker! Mark Zuckerberg threatens Facebook employees; here is what ‘ruthless’ CEO wants

“Once the connection to a target network is confirmed, it stealthily initiates a fraudulent subscription and confirms it without the user’s consent, in some cases even intercepting the one-time password (OTP) to do so. It then suppresses SMS notifications related to the subscription to prevent the user from becoming aware of the fraudulent transaction and unsubscribing from the service,” Microsoft said.

Another unique behavior of toll fraud malware is its use of dynamic code loading, which makes it difficult for mobile security solutions to detect threats. Despite this evasion technique, Microsoft has identified characteristics that can be used to filter and detect this threat.

Mitigating the threat of toll fraud malware

Toll fraud is one of the most common malware categories with high financial loss as its main impact. Due to its sophisticated cloaking techniques, prevention from the side of the user plays a key role in keeping the device secure. A rule of thumb is to avoid installing Android applications from untrusted sources (sideloading) and always follow up with device updates. Check the following steps to protect yourself from toll fraud malware:

1. Install applications only from the Google Play Store or other trusted sources.

2. Avoid granting SMS permissions, notification listener access, or accessibility access to any applications without a strong understanding of why the application needs it. These are powerful permissions that are not commonly needed.

3. Use a solution such as Microsoft Defender for Endpoint on Android to detect malicious applications.

4. If a device is no longer receiving updates, strongly consider replacing it with a new device.

Filed Under: Tech News, Tech Update

Advertisement

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Search Here

Advertisement

Hot Posts

  • Nothing Phone 2 India launch imminent! Check key specs, timeline
  • Time travel to the past possible? This theory shows how
  • Third season of NXP India Tech Startup Challenge is here
  • Garena Free Fire Redeem codes for February 7, 2023: Chance to get the Cobra bundle
  • i-Shock! New iPhone 16, more premium than Pro and Pro Max, coming in 2024?

Tag Cloud

Android Android 6.0 Marshmallow android apps development Android devices Android Smartphone Facebook Gadgets. iPad iPad line iPad Pro iPhone iPhone 6 iPhone 6 Plus Lego Mine craft Crafting Box LG LG G5 LG G5 SE LG G5 SE Specifications Logitech Logitech G900 Logitech G900 Chaos Logitech G900 Chaos Spectrum MagSafe chargers Mi Band Mobile Mobile Charging Mobiles Modern Android Devices Mukesh Ambani Oculus Oculus Rift Oculus VR Parrot Reliance Reliance Jio Smaller scale USB Spectrum virtual reality VR vr headset Wearables Xiaomi Xiaomi Mi Band Xiaomi Mi Band 1S Xiaomi Mi Band Pulse

Hello Visitor !!
Owner of this Blog from Himachal Pradesh,India.Who Love to write on various topics like technology,blogging tool,technology tips, and Sharing his experience and knowledge about technology and things which he learn. Read More…

Recent Posts

  • Nothing Phone 2 India launch imminent! Check key specs, timeline
  • Time travel to the past possible? This theory shows how
  • Third season of NXP India Tech Startup Challenge is here
  • Garena Free Fire Redeem codes for February 7, 2023: Chance to get the Cobra bundle
  • i-Shock! New iPhone 16, more premium than Pro and Pro Max, coming in 2024?

Spam Blocked

121 spam blocked by Akismet

Copyright 2018 - © 2023 · All rights are resreved by Fresh News Hub