• Home Page
  • About Us
  • Advertise
  • Contact Us
  • My Account

TechVisibility

  • Home page
  • News
  • Computing
  • Reviews
  • Apps
  • Gaming
  • Mobile
  • Audio
  • Video
  • Gadgets
  • FinTech
  • EV
  • More
    • Antivirus
    • Cameras
    • Cryptocurrency
    • NFT
    • Phones
    • Security
    • Smart Home
    • Software
    • Streaming
    • TVs
    • Wearables
    • Web hosting
    • What To Watch
You are at :Home»Apps»Octo Android Malware — Beware Of Its Malicious Tentacles!
Photo credit: Todo Android | Twitter: @vtodoandroid

Octo Android Malware — Beware Of Its Malicious Tentacles!

Maria del Luna 10 Apr 2022 Apps, Gadgets, Mobile, Phones, Security Leave a comment 291 Views

Facebook Twitter linkedin Pinterest Tumblr WhatsAppt Telegram Email More

The evolution of malicious code packages over time is an intriguing aspect of the malware life cycle. It’s a case of threat actors seizing something that works and then improving or expanding on it.

Exobot, a type of banking malware that first appeared in 2016, went after users in several countries until 2018, when it morphed into ExobotCompact, a remote access trojan (RAT) with a few other subtypes.

What is Octo malware?

  • Photo credit: iStock

Octo, a new RAT that evolved from Exobot but has even more deceptive features, such as the ability to hide the trojan’s activities while turning your phone into a vehicle for fraud, was recently discovered by cybersecurity researchers.

Octo was discovered by Threat Fabric researchers after they saw requests for it on the dark web. Octo shares many features with ExobotCompact, including measures to prevent reverse engineering and coding that makes it easy to conceal inside an innocent-looking app on the Google Play Store — as well as the clever trick of disabling Google Protect upon download, according to Threat Fabric.

According to Threat Fabric, Octo’s on-device fraud (ODF) functionality is what sets it apart. While ODF isn’t new to the malware world, it is the feature that sets Octo apart from the rest of the Exobot malware family.

How does it work?

Octo sneaks into the Accessibility service and sets up what amounts to a live stream from the compromised phone to the attacker’s command and control servers, which is updated every second.

Then it uses a black screen and disables notifications to keep the innocent user in the dark about what it’s up to.

While it appears that your device has been turned off, the malware is having a party and performing a variety of tasks such as scrolling, tapping, texts, and cutting and pasting while the screen is blank.

Octo also utilizes keylogging software to monitor everything the hacked user types into the device (such as PINs, social security numbers, and OnlyFans messages), as well as the ability to block push notifications from specific apps and intercept or send text messages.

Octo’s tentacles are scarily versatile

  • Photo credit: iStock

Octo is a fitting name for a piece of malware with such frightening versatility. Threat Fabric discovered an innocent-looking app on Google Play called “Fast Cleaner” that was actually a “dropper” for Octo in campaigns where attackers are already using the malware.

Droppers are ostensibly legitimate shells that contain malware payloads. They may even perform as advertised, but they are ultimately poison pills.

“Fast Cleaner” was a popular dropper, according to the cybersecurity site, because it was also used to distribute malware flavors like Alien and Xenomorph.

Malicious software is becoming more cunning with each new evolution, as both Bleeping Computer and Threat Fabric point out, adding features like multi-factor authentication evasion.

It’s easy to feel completely exposed in this situation. When it comes to protecting yourself and your data, vigilance is vital.

Keep up with the latest threats by keeping your device updated with the most recent security patches.

MORE TECHVISIBILITY STORIES:

Warning! A Dangerous App Carries Malware That Keeps Audio Records And Stalks Your Whereabout

Botanago Malware Could Infect Your WiFi Router!

alien banking malware Banking Trojan Cyberattack Cybersecurity Exobot ExobotCompact Fast Cleaner app Google Play Google Play Store malicious software Malware malware attack Octo Octo android malware Octo malware ODF on-device fraud RAT Threat Fabric Trojan Malware Xenomorph 2022-04-10
Maria del Luna
Tags alien banking malware Banking Trojan Cyberattack Cybersecurity Exobot ExobotCompact Fast Cleaner app Google Play Google Play Store malicious software Malware malware attack Octo Octo android malware Octo malware ODF on-device fraud RAT Threat Fabric Trojan Malware Xenomorph

Author

Posted by : Maria del Luna
Maria del Luna is a technophilic writer at TechVisibility who primarily covers the latest in smartphones, social media apps, various software, hybrid cars, and all things celestial. When she is not writing news, she either serves her beloved feline masters, or plays mobile games for hours on end.
Previous Article :

Twitter Reverts Change, To Save Text From Deleted Tweets Again

Next Article :

Metaverse And Its Possible Impact On The In-Car Experience

Related Articles

Twitch Partners with SharePlay on iPad and iPhone

Twitch Partners with SharePlay on iPad and iPhone

Mike West 30 Nov 2021
Panda Malware: Your Crypto Wallet is at Risk; What Do You Need to Do?

Panda Malware: Your Crypto Wallet is at Risk; What Do You Need to Do?

Noah Gravel 11 May 2021
Want iPhone 13? Here’s a problem you might want to read

Want iPhone 13? Here’s a problem you might want to read

Summer Collins 24 Sep 2021
Amazon’s Ad-supported Freevee Is Now Available On Apple TV

Amazon’s Ad-supported Freevee Is Now Available On Apple TV

Noah Gravel 19 May 2022
Popular UV Light Phone Sanitizing Devices

Popular UV Light Phone Sanitizing Devices

Mike West 04 Dec 2020
AirPower Mat — A Look At Apple’s Canceled Wireless Charger

AirPower Mat — A Look At Apple’s Canceled Wireless Charger

Maria del Luna 08 Aug 2021

Leave a Reply

  • Facebook Comments
  • Disqus Comments (0)
Specify a Disqus shortname at Social Comments options page in admin panel

Subscribe to our Channel

YouTube Videos

Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo

Advertisement


TechVisibility


2493 Technology Drive
Hayward, CA 94545
800-601-4491
contact@techvisibility.com

Follow us

Recent Posts

  • Summer Games Done Quick 2022’s Top Game Speedruns

    Summer Games Done Quick 2022’s Top Game Speedruns

    Noah Gravel 03 Jul 2022
  • Amazon Luna Unveils Its July Lineup

    Amazon Luna Unveils Its July Lineup

    Noah Gravel 03 Jul 2022

Advertisement

  • Terms & Conditions
  • Privacy Policy
  • Cookies Policy
  • Accessibility Statement
  • Advertise
  • About Us
  • Contact Us
  • Do not sell my info
  • YouTube Videos
  • My Account
Copyright 2021, All Rights Reserved
Developed By IdealVisibility.com
Posting....
Go to mobile version