Close
  • Latest News
  • Artificial Intelligence
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Latest News
    • Mobile

    Google Weeds Out Large Family of Unwanted Apps on Android Ecosystem

    By
    Jaikumar Vijayan
    -
    March 14, 2017
    Share
    Facebook
    Twitter
    Linkedin
      Mobile Malware

      Google has weeded out a particularly pernicious family of potentially harmful apps from its Android Play store and ad ecosystem.

      The rogue app family that Google has dubbed Chamois was responsible for generating a large volume of invalid ad traffic, illegal app promotion and installation activity and for downloading and executing plugins on end user systems without the users knowledge or permissions.

      In a blog post this week, a trio of Google software security engineers described discovering Chamois during a routine analysis of ad traffic quality. The analysis showed malicious Chamois apps employing a bevy of methods to avoid detection by Google’s security mechanisms.

      Chamois apps tricked users into clicking on advertisements and downloading apps by using deceptive graphics to prevent users from seeing what was actually going on. Some of the Chamois apps that ended up landing on end user devices were designed to commit Short Messaging Service (SMS) fraud by sending premium text messages from the devices.

      In most cases, the malicious apps did not appear on the list of apps on a user’s Android device. So people with an infected device would have no way of knowing the nefarious apps existed or that they needed to uninstall the malware, the Google engineers said.

      The three Google engineers described Chamois as one of the largest families of potentially harmful applications that Google had ever encountered on Play or in the Android ecosystem in general. The term ‘potentially harmful apps’ is something that Google uses to described applications that are not categorically malicious by nature, but pose a danger to users all the same by serving up unwanted pop up ads or tricking them into application downloads.

      Several features made Chamois different from other potentially harmful applications, the Google engineers said. For example, Chamois used a four-stage process to execute its code with each stage involving a different file format. This made it harder to tell if apps in the family fell into the potentially harmful category or not.

      The app also encrypted its configuration files and related code, which again made it harder for Google’s malware detection tools to quickly determine if they were potentially harmful. Google’s security engineers also had to go through more than 100,000 lines of code apparently written by professional developers in order to understand the full scope and potential of Chamois.

      Google’s Verify Apps now automatically detects and helps users remove Chamois from Android devices. All those involved in using the app to game Google’s ad systems have been removed from the platform, the three Google engineers said.

      Unwanted apps like Chamois highlight the need for users to keep Google’s Verified Apps feature turned on. Though the feature is activated by default on Android systems users can turn it off.

      Verified Apps is designed to constantly check device activity and to flag users about potentially harmful or suspicious actions. For instance, it warns users when they are about to download a a potentially malicious app and it helps them uninstall such apps after they are downloaded.

      Jaikumar Vijayan
      Vijayan is an award-winning independent journalist and tech content creation specialist covering data security and privacy, business intelligence, big data and data analytics.
      Get the Free Newsletter!
      Subscribe to Daily Tech Insider for top news, trends & analysis
      This email address is invalid.
      Get the Free Newsletter!
      Subscribe to Daily Tech Insider for top news, trends & analysis
      This email address is invalid.

      MOST POPULAR ARTICLES

      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Applications

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      IT Management

      Intuit’s Nhung Ho on AI for the...

      James Maguire - May 13, 2022 0
      I spoke with Nhung Ho, Vice President of AI at Intuit, about adoption of AI in the small and medium-sized business market, and how...
      Read more
      Cloud

      IGEL CEO Jed Ayres on Edge and...

      James Maguire - June 14, 2022 0
      I spoke with Jed Ayres, CEO of IGEL, about the endpoint sector, and an open source OS for the cloud; we also spoke about...
      Read more
      Applications

      Kyndryl’s Nicolas Sekkaki on Handling AI and...

      James Maguire - November 9, 2022 0
      I spoke with Nicolas Sekkaki, Group Practice Leader for Applications, Data and AI at Kyndryl, about how companies can boost both their AI and...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2022 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×