• Home Page
  • About Us
  • Advertise
  • Contact Us
  • My Account

TechVisibility

  • Home page
  • News
  • Computing
  • Reviews
  • Apps
  • Gaming
  • Mobile
  • Audio
  • Video
  • Gadgets
  • FinTech
  • EV
  • More
    • Antivirus
    • Cameras
    • Cryptocurrency
    • NFT
    • Phones
    • Security
    • Smart Home
    • Software
    • Streaming
    • TVs
    • Wearables
    • Web hosting
    • What To Watch
You are at :Home»Antivirus»Malware Toll Fraud—How An Android App Might Deplete Your Bank Account
Photo from iStock

Malware Toll Fraud—How An Android App Might Deplete Your Bank Account

Noah Gravel 02 Jul 2022 Antivirus, Computing, Fintech, How To, News, Security, Software Leave a comment 241 Views

Facebook Twitter linkedin Pinterest Tumblr WhatsAppt Telegram Email More
Photo from iStock

Toll fraud malware is one of the most common types of Android malware, a subset of billing fraud in which malicious programs subscribe customers to premium services without their knowledge or agreement.

Toll fraud behaves differently from other types of billing fraud, such as SMS fraud and call fraud. To transmit messages or calls to a premium number, SMS fraud or phone fraud use a simple attack flow, whereas toll fraud involves a sophisticated multi-step attack flow that malware authors are constantly improving.

Once a connection to a target network is confirmed, it surreptitiously launches and confirms a fraudulent subscription without the user’s knowledge, in certain circumstances intercepting the one-time password (OTP). It then suppresses SMS subscription notifications to keep the user from becoming aware of the fraudulent transaction and unsubscribing from the service.

Another distinguishing feature of toll fraud malware is its use of dynamic code loading, which makes it difficult for mobile security solutions to detect threats via static analysis because sections of the code are downloaded onto the device at different points in the attack flow. Despite this method of evasion, we have uncovered characteristics that can be utilized to filter and detect this danger. We also see changes in Android API limits and Google Play Store publication policies that may aid in mitigating this issue.

How to understand toll fraud malware

To comprehend toll fraud software, we must first learn more about the billing technique employed by attackers. Wireless Application Protocol billing is the most widely used method of billing in toll fraud (WAP). WAP billing is a payment system that allows consumers to subscribe to paid content from sites that support this protocol and have their mobile phone bill charged directly.

The customer begins the subscription process by establishing a session with the service provider through a cellular network and travelling to the website that provides the paid service. The user must then click a subscription button and, in some situations, receive a one-time password (OTP) that must be provided back to the service provider to confirm the subscription.

Photo from iStock

When a subscription is obtained without the user’s consent, it is considered fraudulent

Toll fraud occurs when malware performs the subscription on the user’s behalf in such a way that the total procedure is not discernible through the following steps:

  1. Disable the Wi-Fi connection or wait for the user to switch to a mobile network
  2. Silently navigate to the subscription page
  3. Auto-click the subscription button
  4. Intercept the OTP (if applicable)
  5. Send the OTP to the service provider (if applicable)
  6. Cancel the SMS notifications (if applicable)

Toll fraud is one of the most widespread types of malware, with a significant financial impact. Because of its complex cloaking techniques, user prevention is critical in keeping the gadget secure. As a general guideline, avoid installing Android apps from untrusted sources and always keep up with device upgrades.

Precautionary steps:

  • Install apps exclusively from the Google Play Store or other reputable sources.
  • Allowing SMS rights, notification listener access, or accessibility access to any application without a clear understanding of why the program need it is a bad idea. These are strong permissions that are rarely required.
  • To detect malicious applications on Android, use a solution such as Microsoft Defender for Endpoint.
  • If a device is no longer receiving updates, it is strongly recommended that it be replaced with a new device.
Photo from iStock

Since 2017, when families like Joker and its variants first appeared in the Google Play Store, toll fraud has been one of the most common types of Android malware.

This malware can cause high mobile bill charges by subscribing consumers to premium services. Affected devices are also at greater danger because this threat is capable of evading detection and achieving a large number of installations before a single variation is eliminated.

Read more:

Signal: Is The Best Alternative To WhatsApp?

Avoid Scams In Mobile Payment Apps — Here’s How

Android Apps malware attack Microsoft Defender online malware billing fraud subscription fraud Toll fraud malware 2022-07-02
Noah Gravel
Tags Android Apps malware attack Microsoft Defender online malware billing fraud subscription fraud Toll fraud malware

Author

Posted by : Noah Gravel
Noah is a tech writer for TechVisibility with a passion for tech products.
Previous Article :

Couple Discovered That Comcast Internet Would Cost $27,000

Next Article :

Detecting Evasion Tactics By Utilizing Process Creation Features

Related Articles

U.S. Eyes to Buy TikTok; Here’s How Much it is

U.S. Eyes to Buy TikTok; Here’s How Much it is

Eli 23 Jul 2020
Hacked Corporate Executives’ Email Accounts are Up for Grab on the Internet

Hacked Corporate Executives’ Email Accounts are Up for Grab on the Internet

Jody G 30 Nov 2020
Apple’s Augmented Reality/Virtual Reality Headset Is One Step Closer To Reality

Apple’s Augmented Reality/Virtual Reality Headset Is One Step Closer To Reality

Noah Gravel 21 May 2022
How to Save on Buying a Computer

How to Save on Buying a Computer

Mike West 28 Feb 2021
TikTok Reassures Republicans That It’s Safeguarding US Data Security

TikTok Reassures Republicans That It’s Safeguarding US Data Security

Maria del Luna 02 Jul 2022
Facebook App Called “Sparked” Makes Sure of Dating with Kindness

Facebook App Called “Sparked” Makes Sure of Dating with Kindness

Melissa P 16 Apr 2021

Leave a Reply

  • Facebook Comments
  • Disqus Comments (0)
Specify a Disqus shortname at Social Comments options page in admin panel

Subscribe to our Channel

YouTube Videos

Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo
Youtubevideo

Advertisement


TechVisibility


2493 Technology Drive
Hayward, CA 94545
800-601-4491
contact@techvisibility.com

Follow us

Recent Posts

  • “Anti-Party Tools” of Airbnb Will Prevent Likely Party Thrower From Renting

    “Anti-Party Tools” of Airbnb Will Prevent Likely Party Thrower From Renting

    Pia Allen 19 Aug 2022
  • Unveiling Of AMD’s Ryzen 7000 Chips

    Unveiling Of AMD’s Ryzen 7000 Chips

    Pia Allen 19 Aug 2022

Advertisement

  • Terms & Conditions
  • Privacy Policy
  • Cookies Policy
  • Accessibility Statement
  • Advertise
  • About Us
  • Contact Us
  • Do not sell my info
  • YouTube Videos
  • My Account
Copyright 2021, All Rights Reserved
Developed By IdealVisibility.com
Posting....
Go to mobile version