Live data from Hacker News

Malicious apps infect 25M Android devices with 'Agent Smith' malware

phys.org

181–190 of 222 posts

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#181
post #2

> Google already fixed at least one of the Android exploits used by "Agent Smith," nicknamed Janus, in 2017 but the fix hasn't made its way onto every Android phone. It's a potent reminder that millions of phones around the world are being used without the latest security measures. Because Samsung (or similar) or even more weirdly, Sprint (or similar) just doesn't fucking update our Android versions for months, or ev…

Time to put some effort into this https://www.replicant.us

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#182
post #77
post #2

> Google already fixed at least one of the Android exploits used by "Agent Smith," nicknamed Janus, in 2017 but the fix hasn't made its way onto every Android phone. It's a potent reminder that millions of phones around the world are being used without the latest security measures. Because Samsung (or similar) or even more weirdly, Sprint (or similar) just doesn't fucking update our Android versions for months, or ev…

This seems to be getting a lot of attention, so as an Android Engineer with some security and framework experience let me try to explain. This is a side effect of Android's initial approach to it's open nature. Android allows a manufacturer to modify its framework for their own use case. Then the manufacturer can allow a specific carrier to input their own system applications and firmware on to the devices well (your…

That explains why we ended up in a bad place, but it's still an absurd situation.

From my perspective, Essential pushes a monthly security update for the PH-1 like clockwork. However, my carrier (Telus) delays it for some random (between ~0-90 days since the PH-1 launch, currently on ~70 days) amount of time. In that entire time, there's never once been an update that's been delayed for any actual changes from the stock update. In fact, if I don't want to wait for the update, I can just swap in any random non-Telus SIM, and the update is no longer blocked. The user experience is better with any carrier in the world other than the one I bought the phone from in the first place!

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#183
post #33

"Check Point is not identifying the company, because they are working with local law enforcement." Well that's dumb. "It appears that you are currently using Ad Blocking software. What are the consequences?" The consequences include avoiding situations just like in the story. When did Phys Org get into tech news? I thought they were just an unreliable source for science rumors.

>When did Phys Org get into tech news? I thought they were just an unreliable source for science rumors.

Just wonder what make your think that they are an unreliable source for science rumors?

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#184

Earlier quoted context omitted.

A lithium ion battery doesn't cost anywhere near that much, its either poor design and/or profiteering on the device manufacturers part to charge that much for a $15 battery to be replaced.

You could say that about all pricing everywhere. Seems like a waste of breath. Also doesn't change the upstream clarification that you don't need to buy a new device to get a new battery.

The battery is a user changeable part on most mid-range and low end phones.

The point of this predatory pricing tactic is to force owners of phones with sub-$200 in value to upgrade, rather than potentially waste half (or more) of the phone's value on replacing the battery.

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#185

Earlier quoted context omitted.

You could say that about all pricing everywhere. Seems like a waste of breath. Also doesn't change the upstream clarification that you don't need to buy a new device to get a new battery.

The battery is a user changeable part on most mid-range and low end phones. The point of this predatory pricing tactic is to force owners of phones with sub-$200 in value to upgrade, rather than potentially waste half (or more) of the phone's value on replacing the battery.

Which carrier sold Android phones - where most users by their phones - have user replaceable batteries?

The Moto G is usually cited as one of the best mid range phone and it doesn’t have user replaceable batteries. I don’t think most of the cheap Walmart phones have user replaceable batteries.

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#186
post #77

Earlier quoted context omitted.

This seems to be getting a lot of attention, so as an Android Engineer with some security and framework experience let me try to explain. This is a side effect of Android's initial approach to it's open nature. Android allows a manufacturer to modify its framework for their own use case. Then the manufacturer can allow a specific carrier to input their own system applications and firmware on to the devices well (your…

As I've commented elsewhere on this thread: my 2015 purchased-new Android tablet has never to my knowledge seen a vendor OS update -- it's running 5.0.2, not even the most recent version at the time, as 5.1.1 was released over six months before the unit was sold. None of this information was available to me at the time, and the 5.1.1 history I've only just learnt whilst composing this comment. I'd purchased the devic…

And up to version 6, Android was not disk-encrypted. If you lose a phone, they don’t need your pw, they can just take the SD card out and read it. All your stored passwords, all your stored cookies, they can read them all...

Never again will I ever trust Android anymore if they can’t even get the basics right.

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#187

Earlier quoted context omitted.

Sounds like an excuse for poor engineering on the part of Android. Microsoft also sells Windows to multiple OEMs and has done so for decades. OEMs also are free to add bloatware as well as the retailers (ie Best Buy adds its own bloat), but Microsoft doesn’t have this problem.

It’s quite different as windows is closed source. The OEMs don’t build their own flavour of windows from source.

Seems like the open source-ness of Android is of little use. It helps manufacturers rather than users.

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#188
post #4

What ad blocking for Android to would recommend?

DNS66, Works without root by creating a local VNM that it then runs its own DNS (with blocklists) on. End results are all the banner adds on most apps will not show up etc. https://f-droid.org/en/packages/org.jak_linux.dns66/

I'm not sure this is necessary anymore now that Google added DNS over TLS ("Private DNS") in Android 9. Just choose a DNS server with your preferred blacklist built in and configure it with native Android. Much better perf than using a fake VPN like DNS66.

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#189

Earlier quoted context omitted.

Let's not be silly, there is no market in this case. It's an oligopoly and occasional cartel.

There is only so much competition you can have in wireless. Different carriers have to have different bands of spectrum and only certain frequencies can be used for cellular.

That's why it's not a market. Like I said.

Re: Malicious apps infect 25M Android devices with 'Agent Smith' malware

#190
post #77
post #2

> Google already fixed at least one of the Android exploits used by "Agent Smith," nicknamed Janus, in 2017 but the fix hasn't made its way onto every Android phone. It's a potent reminder that millions of phones around the world are being used without the latest security measures. Because Samsung (or similar) or even more weirdly, Sprint (or similar) just doesn't fucking update our Android versions for months, or ev…

This seems to be getting a lot of attention, so as an Android Engineer with some security and framework experience let me try to explain. This is a side effect of Android's initial approach to it's open nature. Android allows a manufacturer to modify its framework for their own use case. Then the manufacturer can allow a specific carrier to input their own system applications and firmware on to the devices well (your…

And yet someone can discover a security vulnerability in a software package and it gets put out to every Linux distro as an update in less than a week, usually by volunteers...
Post reply on HN