Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
  • Home
  • Crypto
    • Altcoins
    • Bitcoin
    • Ethereum
    • Monero
    • XRP
    • Zcash
  • Web3
  • DeFi
  • NFTs
No Result
View All Result
Altszn.com
No Result
View All Result

Security Researchers Discover A Darknet Service That Can Turn Legit Android Apps Into Trojans

Altszn.com by Altszn.com
December 12, 2022
in Dark Web
0
Security Researchers Discover A Darknet Service That Can Turn Legit Android Apps Into Trojans
399
SHARES
2.3k
VIEWS
Share on FacebookShare on Twitter


darknet service turn legit android apps trojan news
In the course of investigating an Android banking Trojan known as โ€œErmac,โ€ cybersecurity researchers at ThreatFabric recently discovered a service that takes legitimate apps and turns them into Trojans. The researchers have named this service โ€œZombinder,โ€ as binds a malware dropper to legitimate apps, effectively turning them into zombie apps that appear largely the same but exist to infect Android devices with malware. According to ThreatFabric, a well-known threat actor offers this service on the dark web, advertising it on various hacking and cybercriminal forums. Zombinder poses a significant threat to Android users, as it enables threat actors with no experience developing Android malware to easily acquire customized Trojan apps.

ThreatFabric came across this service while looking into a campaign distributing Android malware through fake Wi-Fi authorization apps. The researchersโ€™ analyses of these Trojan apps revealed some of them to be legitimate apps modified to contain obfuscated malicious code. This obfuscation prevents Google Play Protect and third-party anti-virus applications from detecting the presence of a malware dropper that downloads and installs the Ermac Trojan.

zombified football live stream app installing malicious payload news
Zombified football live stream app installing malicious payload (click to enlarge) (source: ThreatFabric)

The ThreatFabric researchers then ascertained that these modified apps were the product of a service they call Zombinder. First announced in March 2022, Zombinder is a malware binding service used frequently by different threat actors. These actors submit various legitimate applications to the service and receive zombified version in turn. These zombie apps appear to anti-virus services as identical to their legitimate counterparts, owing to their identical package names and the obfuscation of the malicious code added by Zombinder.

However, once installed, the zombie apps prompt users to install fake plugin apps, falsely presenting the plugin apps as required dependencies. In reality, these fake plugin apps contain malware that abuses Android permissions to steal login credentials from a wide variety of financial applications. Android users should be scrutinizing when downloading and installing even familiar applications, as services like Zombinder mean that threat actors of any experience level can turn legitimate apps into zombified version containing malware.



Read More: news.google.com

Tags: Androidappsdark webDarknetdiscoverLegitresearchersSecurityServiceTrojansturn
ADVERTISEMENT

Recent

Cointelegraph Bitcoin & Ethereum Blockchain News

Cointelegraph Bitcoin & Ethereum Blockchain News

June 3, 2025
Coinbase data hack sparks calls to scrap KYC

Coinbase data hack sparks calls to scrap KYC

June 3, 2025
ConSensys acquires Web3Auth to improve MetaMask UX

ConSensys acquires Web3Auth to improve MetaMask UX

June 3, 2025

Categories

  • Bitcoin (4,485)
  • Blockchain (10,699)
  • Crypto (8,639)
  • Dark Web (435)
  • DeFi (8,061)
  • Ethereum (4,512)
  • Metaverse (6,720)
  • Monero (242)
  • NFT (1,049)
  • Solana (4,888)
  • Web3 (19,724)
  • Zcash (459)

Category

Select Category

    Advertise

    Advertise your site, company or product to millions of web3, NFT and cryptocurrency enthusiasts. Learn more

    Useful Links

    Advertise
    DMCA
    Contact Us
    Privacy Policy
    Shipping & Returns
    Terms of Use

    Resources

    Exchanges
    Changelly
    Web3 Jobs

    Recent News

    Cointelegraph Bitcoin & Ethereum Blockchain News

    Cointelegraph Bitcoin & Ethereum Blockchain News

    June 3, 2025
    Coinbase data hack sparks calls to scrap KYC

    Coinbase data hack sparks calls to scrap KYC

    June 3, 2025

    ยฉ 2022 Altszn.com. All Rights Reserved.

    No Result
    View All Result
    • Home
      • Home โ€“ Layout 1
      • Home โ€“ Layout 2
      • Home โ€“ Layout 3

    ยฉ Altszn.com. All Rights Reserved.

    • bitcoinBitcoin (BTC) $ 106,785.00
    • ethereumEthereum (ETH) $ 2,636.95
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.26
    • bnbBNB (BNB) $ 667.34
    • solanaSolana (SOL) $ 162.52
    • usd-coinUSDC (USDC) $ 0.999787
    • dogecoinDogecoin (DOGE) $ 0.197865
    • tronTRON (TRX) $ 0.271266
    • cardanoCardano (ADA) $ 0.694978
    • staked-etherLido Staked Ether (STETH) $ 2,640.11
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 106,750.00
    • hyperliquidHyperliquid (HYPE) $ 38.08
    • suiSui (SUI) $ 3.32
    • wrapped-stethWrapped stETH (WSTETH) $ 3,156.75
    • chainlinkChainlink (LINK) $ 14.38
    • avalanche-2Avalanche (AVAX) $ 21.43
    • stellarStellar (XLM) $ 0.275744
    • leo-tokenLEO Token (LEO) $ 8.82
    • bitcoin-cashBitcoin Cash (BCH) $ 408.04
    • the-open-networkToncoin (TON) $ 3.20
    • shiba-inuShiba Inu (SHIB) $ 0.000013
    • hedera-hashgraphHedera (HBAR) $ 0.174928
    • wethWETH (WETH) $ 2,643.44
    • usdsUSDS (USDS) $ 0.999788
    • litecoinLitecoin (LTC) $ 90.09
    • wrapped-eethWrapped eETH (WEETH) $ 2,823.58
    • moneroMonero (XMR) $ 349.72
    • polkadotPolkadot (DOT) $ 4.19
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • bitget-tokenBitget Token (BGB) $ 4.88
    • pepePepe (PEPE) $ 0.000013
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 106,930.00
    • pi-networkPi Network (PI) $ 0.653748
    • whitebitWhiteBIT Coin (WBT) $ 31.53
    • aaveAave (AAVE) $ 270.65
    • uniswapUniswap (UNI) $ 6.77
    • daiDai (DAI) $ 0.999815
    • bittensorBittensor (TAO) $ 398.48
    • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.18
    • aptosAptos (APT) $ 5.01
    • nearNEAR Protocol (NEAR) $ 2.58
    • crypto-com-chainCronos (CRO) $ 0.103238
    • okbOKB (OKB) $ 50.36
    • jito-staked-solJito Staked SOL (JITOSOL) $ 196.29
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • internet-computerInternet Computer (ICP) $ 5.29
    • ondo-financeOndo (ONDO) $ 0.866002
    • ethereum-classicEthereum Classic (ETC) $ 17.67
    • bitcoinBitcoin (BTC) $ 106,785.00
    • ethereumEthereum (ETH) $ 2,636.95
    • tetherTether (USDT) $ 1.00
    • xrpXRP (XRP) $ 2.26
    • bnbBNB (BNB) $ 667.34
    • solanaSolana (SOL) $ 162.52
    • usd-coinUSDC (USDC) $ 0.999787
    • dogecoinDogecoin (DOGE) $ 0.197865
    • tronTRON (TRX) $ 0.271266
    • cardanoCardano (ADA) $ 0.694978
    • staked-etherLido Staked Ether (STETH) $ 2,640.11
    • wrapped-bitcoinWrapped Bitcoin (WBTC) $ 106,750.00
    • hyperliquidHyperliquid (HYPE) $ 38.08
    • suiSui (SUI) $ 3.32
    • wrapped-stethWrapped stETH (WSTETH) $ 3,156.75
    • chainlinkChainlink (LINK) $ 14.38
    • avalanche-2Avalanche (AVAX) $ 21.43
    • stellarStellar (XLM) $ 0.275744
    • leo-tokenLEO Token (LEO) $ 8.82
    • bitcoin-cashBitcoin Cash (BCH) $ 408.04
    • the-open-networkToncoin (TON) $ 3.20
    • shiba-inuShiba Inu (SHIB) $ 0.000013
    • hedera-hashgraphHedera (HBAR) $ 0.174928
    • wethWETH (WETH) $ 2,643.44
    • usdsUSDS (USDS) $ 0.999788
    • litecoinLitecoin (LTC) $ 90.09
    • wrapped-eethWrapped eETH (WEETH) $ 2,823.58
    • moneroMonero (XMR) $ 349.72
    • polkadotPolkadot (DOT) $ 4.19
    • binance-bridged-usdt-bnb-smart-chainBinance Bridged USDT (BNB Smart Chain) (BSC-USD) $ 1.00
    • ethena-usdeEthena USDe (USDE) $ 1.00
    • bitget-tokenBitget Token (BGB) $ 4.88
    • pepePepe (PEPE) $ 0.000013
    • coinbase-wrapped-btcCoinbase Wrapped BTC (CBBTC) $ 106,930.00
    • pi-networkPi Network (PI) $ 0.653748
    • whitebitWhiteBIT Coin (WBT) $ 31.53
    • aaveAave (AAVE) $ 270.65
    • uniswapUniswap (UNI) $ 6.77
    • daiDai (DAI) $ 0.999815
    • bittensorBittensor (TAO) $ 398.48
    • ethena-staked-usdeEthena Staked USDe (SUSDE) $ 1.18
    • aptosAptos (APT) $ 5.01
    • nearNEAR Protocol (NEAR) $ 2.58
    • crypto-com-chainCronos (CRO) $ 0.103238
    • okbOKB (OKB) $ 50.36
    • jito-staked-solJito Staked SOL (JITOSOL) $ 196.29
    • blackrock-usd-institutional-digital-liquidity-fundBlackRock USD Institutional Digital Liquidity Fund (BUIDL) $ 1.00
    • internet-computerInternet Computer (ICP) $ 5.29
    • ondo-financeOndo (ONDO) $ 0.866002
    • ethereum-classicEthereum Classic (ETC) $ 17.67