Showing posts with label GPS Location. Show all posts
Showing posts with label GPS Location. Show all posts

Friday, 15 May 2015

Provider Mobile Spyware Hacked, Customer Data Leaked


Attackers have managed at a popular provider of mobile spyware to break into and subsequently stolen and put online database with customer data. The software in question is mSpy that own words almost 2 million users have.

According to the attackers in the hack, which is unknown how that occurred, captured the data of more than 400,000 people.IT journalist Brian Krebs , however, that the actual number of customers affected can not be determined. However, concerns sensitive information such as emails, text messages, pay and location data, passwords, Apple ID, photos and calendar data.In total, there were hundreds of gigabytes of data stolen.

Through mSpy users can use the phone a different monitors, such as incoming and outgoing calls, text messages, emails, GPS location, chat conversations, Internet and can access the address book and calendar are obtained. For this purpose it is required that the user has physical access to the device of the other, so that the mSpy can be installed. The software itself has not yet responded to the burglary.

Wednesday, 25 March 2015

Half Of Android Users Would Be Vulnerable To Attack APK


Android Users who install apps outside of Google Play and an old Android version use are vulnerable to a new attack. It was estimated to be half of all Android users, warns security company Palo Alto Networks.The actual number is probably much lower.

Through the vulnerability could allow an attacker to break into the installation of a seemingly safe APK file and replace it with an app of choice, without the user noticing. The security issue is caused by an error in the system service "Package Installer" of Android, allowing attackers unnoticed can get unlimited access rights. During installation let Android Apps see what permissions they need in order to work properly. A Messages app, for example, require access to SMS messages, but not to the GPS location.

The vulnerability gives attackers the ability to deceive users by a false, smaller set to allow access rights to see. In reality, the user, if he chooses to install the app, just give access to all services and data on the device, including personal information and passwords. The problem is present in Android 2.3, 4.0.3-4.0.4, 4.1.x, and 4.2.x and some distributions of 4.3. According to Palo Alto Networks uses about half of Android users one of these versions.

The actual number of users that are at risk is likely to be much lower. The security issue because only occurs at Android apps that are downloaded from third parties and unofficial marketplaces. It does not apply to apps downloaded from Google Play. These files are downloaded namely in a safe environment that can not be modified by an attacker. Owners of Android devices vulnerable therefore be advised to only download apps from Google Play.