Consider this yet another PSA on asian erotice teasewhy you should never ever download Adobe Flash Player, or anything resembling it if you're using an Android phone.
Security researchers at ESET have discovered a new kind of ransomware infecting Android phones on a level nobody's ever seen before. Called DoubleLocker, the exploit encrypts the data on the infected device and then changes its PIN number so victims are locked out of their device unless they pay the ransom demanded by hackers.
SEE ALSO: Why the iPhone 8 Plus is a better camera than a real cameraThe DoubleLocker hack is a threat to any Android device; it's particularly worrying since it doesn't require a "rooted" phone that gives extra access for the hacker to run its own code, but the effect is severe -- locking the user completely out of their own device.
ESET researchers say this is the first time on Android that any malware has been created that combines both data encryption and PIN changes.
The ransomware is distributed through fake Adobe Flash Player downloads shared on compromised websites and it installs itself once you give it accessibility access through the "Google Play Service." You can see a video of how the ransomware is triggered in the video below.
The malware installs itself as the default Android launcher, the piece of software that controls the look and feel of the device and how apps and widgets launch, and essentially creates an invisible shortcut that activates itself whenever the home button is pressed.
You'll know your files are infected if you see a ".cryeye" extension at the end of the file.
DoubleLocker also changes your device's PIN number to a random combination which isn't sent to the hackers. With no digital trail, it's virtually impossible to recover the PIN. The hackers can remotely reset the PIN when you pay the ransom.
Users with DoubleLocker-infected devices have 24 hours to pay 0.0130 Bitcoin (about $73.38 at the time of this writing) to un-encrypt their data. Fortunately, your files aren't deleted if you don't pay up. But still, this is ransomware and since your phone will be locked with an unknown passcode, you're at the hackers' mercy.
At this time the only way to remove DoubleLocker is to perform a factory reset, which will erase all of your files.
However, if you have a phone that was rooted andin debug mode before DoubleLocker locked it up, you can bypass the malware's randomized PIN code without a factory reset, according to WeLiveSecurity. If your device meets both of these parameters, you can by access it with the Android Debug Bridge (adb) and remove the file system where the PIN code is stored. Once that's done, you can switch your device to "safe mode" to disable the admin permissions for the malware and remove it. It's not an easy process and you should definitely wipe the entire device once you've recovered your files, just to guarantee that DoubleLocker is completely removed.
You'll know your files are infected if you see a ".cryeye" extension at the end of the file.
In 2012, Adobe removed Flash from the Google Play Store, officially ending its development on mobile. While Flash was pivotal to the development of the interactive websites during the '90s and early '00s, it's no longer relevant in mobile ecosystems.
Steve Jobs openly criticized Flash for its being a huge battery hog and for its endless security exploits.
While no longer crucial on mobile devices -- developers have moved on to the faster and more secure HTML 5 -- DoubleLocker is a reminder that there are many people who aren't informed on the dangers that come with installing Flash.
It might take something as courageous as Adobe publicly denouncing Flash before people ingrain it in their brains that installing Flash anythingis extremely insecure and not worth potentially compromising their devices.
Topics Android Cybersecurity
Twitter rolls out tipping with bitcoin, explores verifying NFT profile picsGoogle Meet declares war on that sunny window behind you that's making you underexposedMitt Romney is now happy to accept 'phony' Donald Trump's endorsementDonald Trump gets the 'deepfake' treatmentNew Android features let users control phones with facial movementsCDC says 3 of 4 kids killed by flu this season were not vaccinated'Foundation' review: Apple TV+ chases prestige TV again. It's great.Fergie's jazzy national anthem at the NBA All5 things you can't do on BumbleEverything you need to know about Steve McQueen's 3 documentaries on Amazon PrimeMicrosoft's new Surface lineup adds Pro 8, Laptop Studio, and Duo 2Donald Trump gets the 'deepfake' treatmentSXSW speaker scrambles to change sexist panel title following Twitter backlashPornhub traffic is up in South Korea, thanks to the Winter OlympicsThe EU wants phone manufacturers to switch to USB'Black Panther': A guide to all your crushesMexican Olympic skier finishes last but still gets a hero's celebrationNew GoogleAdam Rippon: "I'm like a witch and you can't kill me."Donald Trump criticized for his happy demeanor after school shooting We should all be letting 2 We guess you could display flowers in this suspiciously NSFW vase These nuns buy stock in gun companies to fight for gun safety Twitter’s livestreaming video app Periscope launches audio The Colorado River is evaporating, and climate change is a big culprit Naming Pokémon using autocorrect is an endlessly thrilling experience 74 percent of Americans have changed their relationship with Facebook 'Destiny 2: Forsaken' first impressions: The first 24 hours Serena Williams is sticking it to her wardrobe shamers with this cute pic of her daughter Google will probably announce the Pixel 3 on Oct. 9 Elizabeth Warren shares sweet story of when she proposed to her husband Christine Hallquist could become America's first openly trans governor Rescue puppy's delightfully weird portraits scream 'adopt me' There’s a ‘Hamilton’ Easter Egg in ‘Marvel’s Spider Son of Louisiana man killed by police urges peaceful protest, 'not guns' Airport security bins are gross as hell, according to a new study Hurricane Florence is our first major hurricane of the 2018 season New Roomba i7+ remembers a map of your home Denver International Airport ~knows~ about the conspiracy theories and is trolling us all Desperate Chinese Pokémon trainers are buying Australian and US App Store accounts on Taobao
3.7218s , 10196.703125 kb
Copyright © 2025 Powered by 【asian erotice tease】,Creation Information Network