More Supply Chain Woes: DeathRing Is Factory-Loaded Smartphone Malware
ID: 8e1d62b0-8ce1-51bf-abd4-76e1c4fba158
STIX ID: report--8e1d62b0-8ce1-51bf-abd4-76e1c4fba158
Feed Name: Security Ledger
Lookout Security reported 'DeathRing', a Chinese Android Trojan pre-installed on off-market and counterfeit phones shipped to countries in Asia and Africa. Disguised as a ringtone app, it retrieves SMS and WAP content from a command-and-control server to send phishing or premium SMS, manipulate browsing sessions, and prompt installation of additional modules; instances were found on multiple device models (including Galaxy S4 clones and other low-end brands), indicating a supply-chain compromise risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
