Hacking Team Android malware avoids Google Play controls

The Hacking Team had developed an Android application that could potentially run malware. The app appeared on the Google Play Store as an innocent new app, according to Trend Micro.

The application, BeNews, asks for only three user permissions when installed, and is able to avoid Google's automated controls as the exploit it uses is not contained in the code reported by the security company.google play Hacking Team

Discover more articles in search results.

"The BeNews app was downloaded 50 times before being removed from Google Play on July 7," says Trend Micro. "Looking at the routines of the app, we believe that the app can bypass the limitations of Google Play, using dynamic loading technology."

“Dynamic loading technology allows the application to download and execute code from the internet. It does not upload the code to Google to bypass the application verification, but uploads it later when the victim starts using it. ”

Trend Micro said the Hacking Team had written guidelines for its customers to help them make the best use of the malicious application that used vulnerabilities to escalate privileges (CVE-2014-3153, available on Android 2.2 to and 4.4.4).

Let's say in an interview earlier this week, Hacking Team Chief Executive David Vincenzetti said his company had been misunderstood and they were good at the case.

"The system of law enforcement that the Hacking Team has been distributing to law enforcement for more than a decade is crucial to the task of preventing, investigating crime and terrorism," Vincenzetti said in a statement.

"No other company has ever developed applications as complete, as easy to use, or as powerful as ours."

Of course we do not know what has developed Vupen, so that there is a measure of comparison.


Google preferences

Leave a Comment

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).