Why is this being called a backdoor? Is there any indication that that's what it is? Except for the headline, the only claim even remotely as serious made in the article is that it can root some devices, and figuring out which ones is left as an exercise for the reader...
Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
31–40 of 66 posts
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#32Earlier quoted context omitted.
It was (still is?) a common practice to grant all permissions when installing an app from Google Play. Most people don't even look at the "annoying" popup that lists permissions to be granted and just press "accept" without ever reading it.
I mostly have apple devices but have a Nexus 7 at home. I'm not sure which version it's running. Every time I install something I have a sinking feeling as it asks me to allow it to do things that sound wildly beyond anything I would ever want an app to do. Things like an app for my kids that asks for something along the lines of "access to the files". Hopefully things have improved with the newer OS but man I feel u…
Android prompts info about whats happening, iOS just ignores them and keeps going.
With this simple difference, people tend to think iOS works better! I cannot trust an OS that doesn't ask me stuff, or takes things for granted.
Best example is the "Force close" dialog on Android vs just crashing the app on iOS.
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#33Earlier quoted context omitted.
I mostly have apple devices but have a Nexus 7 at home. I'm not sure which version it's running. Every time I install something I have a sinking feeling as it asks me to allow it to do things that sound wildly beyond anything I would ever want an app to do. Things like an app for my kids that asks for something along the lines of "access to the files". Hopefully things have improved with the newer OS but man I feel u…
I see this very interesting: Android prompts info about whats happening, iOS just ignores them and keeps going. With this simple difference, people tend to think iOS works better! I cannot trust an OS that doesn't ask me stuff, or takes things for granted. Best example is the "Force close" dialog on Android vs just crashing the app on iOS.
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#34Earlier quoted context omitted.
Well it's not like there's any option to deny them. You can only not install the app, unless the app chooses to build for the Android 6 permission system.
Of course you can deny them. After you install the app, just go into settings and deny every permission.
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#35What's so special about this one compared to the other well-known trojans (like omnirat, the RAT this one is based on)?
>GhostCtrl is also actually a variant (or at least based on) of the commercially sold, multiplatform OmniRAT that made headlines in November 2015.
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#36Earlier quoted context omitted.
I really like "your.bank" I wonder how many people would believe that works.
With current new global TLDs? Why not?
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#37Title is misleading, it makes it sound like the backdoor is in the Android software while this is just malware.
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#38Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#39Title is misleading, it makes it sound like the backdoor is in the Android software while this is just malware.
The point is that android makes it possible. You don't have these things on iOS because apple doesn't allow them, where google does.
Re: Android Backdoor GhostCtrl Can Silently Record Your Audio, Video, and More
#40Why is this being called a backdoor? Is there any indication that that's what it is? Except for the headline, the only claim even remotely as serious made in the article is that it can root some devices, and figuring out which ones is left as an exercise for the reader...
C&C servers, evasion techniques like masquerading as system package, bootstrapping the encrypted payload malware with a wrapper APK, ransomware features, piles of exfiltrated informaiton, intercepting calls and text messages, ransomware functionality... it's like a crook with a record the size of a phonebook.