Nairametrics
  • Home
  • Exclusives
    • Financial Analysis
    • Corporate Stories
    • Interviews
    • Investigations
    • Metrics
  • Markets
    • Cryptos
    • Commodities
    • Equities
      • Dividends
      • Stock Market
    • Fixed Income
    • Market Views
    • Securities
  • Industries
    • Company News
    • Consumer Goods
    • Content Partners
    • Corporate deals
    • Corporate Press Releases
    • Energy
    • Entertainment
    • Financial Services
    • Hospitality & Travel
    • Manufacturing
    • Real Estate and Construction
    • Tech News
  • Economy
    • Get Data
    • Macro-Economic News
    • Research Analysis
  • Business News
  • Financial Literacy
    • Career tips
    • Personal Finance
  • Lifestyle
    • Billionaire Watch
    • Profiles
  • Opinions
    • Blurb
    • Op-Eds
No Result
View All Result
  • Home
  • Exclusives
    • Financial Analysis
    • Corporate Stories
    • Interviews
    • Investigations
    • Metrics
  • Markets
    • Cryptos
    • Commodities
    • Equities
      • Dividends
      • Stock Market
    • Fixed Income
    • Market Views
    • Securities
  • Industries
    • Company News
    • Consumer Goods
    • Content Partners
    • Corporate deals
    • Corporate Press Releases
    • Energy
    • Entertainment
    • Financial Services
    • Hospitality & Travel
    • Manufacturing
    • Real Estate and Construction
    • Tech News
  • Economy
    • Get Data
    • Macro-Economic News
    • Research Analysis
  • Business News
  • Financial Literacy
    • Career tips
    • Personal Finance
  • Lifestyle
    • Billionaire Watch
    • Profiles
  • Opinions
    • Blurb
    • Op-Eds
No Result
View All Result
Nairametrics
No Result
View All Result
Home Industries Tech News

Microsoft raises alarm over new Android malware, ‘toll fraud’

Samson Akintaro by Samson Akintaro
July 4, 2022
in Tech News
Microsoft office

Microsoft takes its Metaverse dreams a step further with the acquistion of activision

Share on FacebookShare on TwitterShare on Linkedin

Researchers at Microsoft have warned Android users of malware called ‘toll fraud’ that disguises as normal apps on the Google Play Store and drains the wallet of users once installed. Microsoft describes toll fraud malware as a subcategory of billing fraud in which malicious applications subscribe users to premium services without their knowledge or consent.

This type of malware is said to be one of the most prevalent types of Android malware – and it continues to evolve.

Compared to other subcategories of billing fraud, which include SMS fraud and call fraud, toll fraud has unique behaviours. Whereas SMS fraud or call fraud uses a simple attack flow to send messages or calls to a premium number, toll fraud has a complex multi-step attack flow that malware developers continue to improve.

RelatedPosts

How to apply for Microsoft’s fresh graduate program and earn up to $151k per annum

Microsoft opens US, Canada job opportunities for fresh graduates from Nigeria, other African countries

What they are saying

Explaining how the malware operates, the researchers in a Microsoft blog post-https://www.microsoft.com/security/blog/2022/06/30/toll-fraud-malware-how-an-android-application-can-drain-your-wallet/, said,

”We saw new capabilities related to how this threat targets users of specific network operators. It performs its routines only if the device is subscribed to any of its target network operators. It also, by default, uses cellular connection for its activities and forces devices to connect to the mobile network even if a Wi-Fi connection is available.”

News continues after this ad


“Once the connection to a target network is confirmed, it stealthily initiates a fraudulent subscription and confirms it without the user’s consent, in some cases even intercepting the one-time password (OTP) to do so. It then suppresses SMS notifications related to the subscription to prevent the user from becoming aware of the fraudulent transaction and unsubscribing from the service,” they added.

How it gets to your phone

  • This type of attack starts when a user downloads an app the malware is disguised as in the Google Play Store.
  • These trojan apps will usually be listed in popular categories in the app store such as personalization (wallpaper and lock screen apps), beauty, editor, communication (messaging and chat apps), photography, and tools (like cleaner and fake antivirus apps).
  • The researchers say that these apps will ask for permissions that don’t make sense for what is being done (i.e. a camera or wallpaper app asking for SMS or notification listening privileges).

Protecting yourself against the malware

Microsoft in the security alert notes that toll fraud is one of the most common malware categories with high financial loss as its main impact. Due to its sophisticated cloaking techniques, prevention from the side of the user plays a key role in keeping the device secure.

News continues after this ad


According to the researchers, a rule of thumb is to avoid installing Android applications from untrusted sources (sideloading) and always follow up with device updates. They also recommend end-users take the following steps to protect themselves from toll fraud malware:

  • Install applications only from the Google Play Store or other trusted sources.
  • Avoid granting SMS permissions, notification listener access, or accessibility access to any applications without a strong understanding of why the application needs it. These are powerful permissions that are not commonly needed.
  • Use a solution such as Microsoft Defender for Endpoint on Android to detect malicious applications.
  • If a device is no longer receiving updates, strongly consider replacing it with a new device.

Related

Tags: malwareMicrosofttoll fraud

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

inq
avatrade
Stanbic bank
Mega Millions
UBN
Hot forex
Access Bank
Bankers Committee
First bank






    Business News | Stock Market | Money Market | Cryptos | Financial Literacy | SME |

    Recent News

    • Memecoins rally as crypto market cools off
    • Lagos considers total ban of Okada across the state as crime rate drops by 86% in 6 LGAs
    • How to apply for Microsoft’s fresh graduate program and earn up to $151k per annum

    Follow us on social media:

    Recent News

    Memecoins rally as crypto market cools off

    Memecoins rally as crypto market cools off

    August 16, 2022
    Lagos considers total ban of Okada across the state as crime rate drops by 86% in 6 LGAs

    Lagos considers total ban of Okada across the state as crime rate drops by 86% in 6 LGAs

    August 16, 2022
    • ABOUT US
    • CONTACT US
    • PRODUCTS
    • ANDROID APP
    • iOS APP
    • DISCLAIMER
    • CAREERS
    • PRIVACY POLICY

    © 2022 Nairametrics

    No Result
    View All Result
    • Home
    • Exclusives
      • Financial Analysis
      • Corporate Stories
      • Interviews
      • Investigations
      • Metrics
    • Markets
      • Cryptos
      • Commodities
      • Equities
        • Dividends
        • Stock Market
      • Fixed Income
      • Market Views
      • Securities
    • Industries
      • Company News
      • Consumer Goods
      • Content Partners
      • Corporate deals
      • Corporate Press Releases
      • Energy
      • Entertainment
      • Financial Services
      • Hospitality & Travel
      • Manufacturing
      • Real Estate and Construction
      • Tech News
    • Economy
      • Get Data
      • Macro-Economic News
      • Research Analysis
    • Business News
    • Financial Literacy
      • Career tips
      • Personal Finance
    • Lifestyle
      • Billionaire Watch
      • Profiles
    • Opinions
      • Blurb
      • Op-Eds

    © 2022 Nairametrics

    Social Media Auto Publish Powered By : XYZScripts.com