Bitcoin Forum
April 26, 2024, 11:05:52 PM *
News: Latest Bitcoin Core release: 27.0 [Torrent]
 
   Home   Help Search Login Register More  
Pages: [1]
  Print  
Author Topic: Security / If you are Android user and invest in Crypto, please be careful  (Read 251 times)
leader2704 (OP)
Jr. Member
*
Offline Offline

Activity: 238
Merit: 3


View Profile WWW
August 05, 2019, 08:24:11 AM
 #1

If you are an Android user, you need to scan your device to ensure that you have not been compromised by a potent virus called the 'Anubis' virus.

This virus has the ability to render 2FA void via a MITM (man-in-the-middle) attack.

In addition, this virus could even render certain encryptions (i.e., DSAs like ECDSA) via a timing attack.

This virus is extremely sophisticated and it is targeting blockchain users specifically.

Make sure that you read this report. This was put out with particular urgency because it does not appear that this has been covered in the blockchain sphere at all for some reason. There are numerous cybersecurity experts in other sectors of this tech space that have written about this virus (including ZDnet as recently as this month).

Below is the link to the first report:

https://blog.zerononcense.com/2019/07/27/anubis-virus-major-android-virus-attacking-bitfinex-binance-exchange-apps-and-others-pt-1/
1714172752
Hero Member
*
Offline Offline

Posts: 1714172752

View Profile Personal Message (Offline)

Ignore
1714172752
Reply with quote  #2

1714172752
Report to moderator
1714172752
Hero Member
*
Offline Offline

Posts: 1714172752

View Profile Personal Message (Offline)

Ignore
1714172752
Reply with quote  #2

1714172752
Report to moderator
Advertised sites are not endorsed by the Bitcoin Forum. They may be unsafe, untrustworthy, or illegal in your jurisdiction.
1714172752
Hero Member
*
Offline Offline

Posts: 1714172752

View Profile Personal Message (Offline)

Ignore
1714172752
Reply with quote  #2

1714172752
Report to moderator
tbct_mt2
Hero Member
*****
Offline Offline

Activity: 2310
Merit: 835



View Profile WWW
August 06, 2019, 04:09:11 AM
 #2

It is better to stay away from using mobile apps to trade. You can install those apps, to observe prices, but should not log in your accounts with mobile apps and trade directly on apps.
I only log in my accounts and trade on computers.

.
 airbet 
██
██
██
██
██
██
██
██
██
██
██
██
██
 .

▄████▄▄▄██████▄
███████████████
███████████████
███████▀▀▀▀████
██████████████
▀███▀███████▄██
██████████▄███
██████████████
███████████████
███████████████
██████████████
█████▐████████
██████▀███████▀
▄███████████████▄
████████████████
█░██████████████
████████████████
████████████████
█████████████████
█████████████████
███████░█░███████
████████████████
█████████████████
██████████████░█
████████████████
▀███████████████▀
.
.
.
.
██▄▄▄
████████▄▄
██████▀▀████▄
██████▄░░████▄
██████████████
████████░░▀███▌
░████████▄▄████
██████████████▌
███░░░█████████
█████████░░░██▀
░░░███████████▀
██████░░░██▀
░░▀▀███▀

   
|.
....
██
██
██
██
██
██
██
██
██
██
██
██
██
.
 PLAY NOW 
JeromeTash
Legendary
*
Offline Offline

Activity: 2128
Merit: 1210


Heisenberg


View Profile
August 06, 2019, 04:37:29 AM
 #3

It is better to stay away from using mobile apps to trade. You can install those apps, to observe prices, but should not log in your accounts with mobile apps and trade directly on apps.
I only log in my accounts and trade on computers.
Even computers can be compromised especially PCs running on Windows. Lots of Malware out there.
Best thing to do is keep your device clean. Only download or get app links from the official websites.
And also have a good antivirus running on your device anytime you are using it.

There are some mobile apps that ease trading on the go Like Binance, Huobi, Kucoin apps, tab trader. If you are a day trader trust me... they come in handy when you are not with your computer. So you can't do away with them entirely.

█████████████████████████
██
█████▀▀███████▀▀███████
█████▀░░▄███████▄░░▀█████
██▀░░██████▀░▀████░░▀██
██▀░░▀▀▀████████████░░▀██
██░░█▄████▀▀███▀█████░░██
██░░███▄▄███████▀▀███░░██
██░░█████████████████░░██
██▄░░████▄▄██████▄▄█░░▄██
██▄░░██████▄░░████░░▄██
█████▄░░▀███▌░░▐▀░░▄█████
███████▄▄███████▄▄███████
█████████████████████████
.
.ROOBET 2.0..██████.IIIIIFASTER & SLEEKER.██████.
|

█▄█
▀█▀
████▄▄██████▄▄████
█▄███▀█░░█████░░█▀███▄█
▀█▄▄░▐█████████▌▄▄█▀
██▄▄█████████▄▄████▌
██████▄▄████████
█▀▀████████████████
██████
█████████████
██
█▀▀██████████████
▀▀▀███████████▀▀▀▀
|.
    PLAY NOW    
jseverson
Hero Member
*****
Offline Offline

Activity: 1834
Merit: 759


View Profile
August 06, 2019, 05:46:40 AM
 #4

There's really no need to scan if you're aware of what to avoid, since you can't get it through random usage:

There are a host of alleged security flaws in the Google Play store that the malware operators were able to exploit in order to infect Android devices via downloads of applications that appeared to be legitimate on the store.

If you're installing random apps on your android phone, you'd probably have a lot more threats to worry about than just this considering the state of the Play Store. You should be taking care of your phone like your PC, where you avoid installing unnecessary apps and verify all your downloads.

tbct_mt2
Hero Member
*****
Offline Offline

Activity: 2310
Merit: 835



View Profile WWW
August 06, 2019, 05:51:38 AM
 #5

Even computers can be compromised especially PCs running on Windows. Lots of Malware out there.
Best thing to do is keep your device clean. Only download or get app links from the official websites.
And also have a good antivirus running on your device anytime you are using it.

There are some mobile apps that ease trading on the go Like Binance, Huobi, Kucoin apps, tab trader. If you are a day trader trust me... they come in handy when you are not with your computer. So you can't do away with them entirely.
All kinds of devices are vulnerable to attacks if we are not careful on how we use them in online environments. Mobile devices are more vulnerable than computers, that what I want to emphasize. I do installed those apps but just to observe price, nothing more. I will keep sticking with my computers for tradings. If I don't have connection to computers, don't trade. In my opinion, it is more important to protect my funds, rather than increase them with some types of risks.

.
 airbet 
██
██
██
██
██
██
██
██
██
██
██
██
██
 .

▄████▄▄▄██████▄
███████████████
███████████████
███████▀▀▀▀████
██████████████
▀███▀███████▄██
██████████▄███
██████████████
███████████████
███████████████
██████████████
█████▐████████
██████▀███████▀
▄███████████████▄
████████████████
█░██████████████
████████████████
████████████████
█████████████████
█████████████████
███████░█░███████
████████████████
█████████████████
██████████████░█
████████████████
▀███████████████▀
.
.
.
.
██▄▄▄
████████▄▄
██████▀▀████▄
██████▄░░████▄
██████████████
████████░░▀███▌
░████████▄▄████
██████████████▌
███░░░█████████
█████████░░░██▀
░░░███████████▀
██████░░░██▀
░░▀▀███▀

   
|.
....
██
██
██
██
██
██
██
██
██
██
██
██
██
.
 PLAY NOW 
Mastery
Jr. Member
*
Offline Offline

Activity: 31
Merit: 26


View Profile
August 06, 2019, 06:04:29 AM
 #6

There are some mobile apps that ease trading on the go Like Binance, Huobi, Kucoin apps, tab trader. If you are a day trader trust me... they come in handy when you are not with your computer. So you can't do away with them entirely.
Many people are just holders and hence they can use computer to buy/sell at low frequency. But for regular traders, the demand to take profit or cut loss are high, especially when bitcoin rises or falls suddenly. Thus, mobile apps are needed. The only downside is that Binance app is not available on iOS. Using Android devices, CH Play apps are more lenient controlled and hence more risk of malwares. However, it doesn't matter whether it's PCs or smartphones, using in a smart and proper way can help avoid the risk of being attacked.
tbct_mt2
Hero Member
*****
Offline Offline

Activity: 2310
Merit: 835



View Profile WWW
August 06, 2019, 06:48:15 AM
 #7

Still it is not recommended to use any device with small screen because we might make silly mistake at entering the values which can be a huge loss for us.Better buy convetible laptop which can be used as table to by removing the screen so we can have our trading activities anytime anywhere.
That's it. Screens of mobile devices are much smaller than computers, sure. And, on smaller screens, people are easier to make mistakes. It does not an issues if you make mistakes when typing Word documents, but if you do it when trading, it is serious issue.

.
 airbet 
██
██
██
██
██
██
██
██
██
██
██
██
██
 .

▄████▄▄▄██████▄
███████████████
███████████████
███████▀▀▀▀████
██████████████
▀███▀███████▄██
██████████▄███
██████████████
███████████████
███████████████
██████████████
█████▐████████
██████▀███████▀
▄███████████████▄
████████████████
█░██████████████
████████████████
████████████████
█████████████████
█████████████████
███████░█░███████
████████████████
█████████████████
██████████████░█
████████████████
▀███████████████▀
.
.
.
.
██▄▄▄
████████▄▄
██████▀▀████▄
██████▄░░████▄
██████████████
████████░░▀███▌
░████████▄▄████
██████████████▌
███░░░█████████
█████████░░░██▀
░░░███████████▀
██████░░░██▀
░░▀▀███▀

   
|.
....
██
██
██
██
██
██
██
██
██
██
██
██
██
.
 PLAY NOW 
Jet Cash
Legendary
*
Offline Offline

Activity: 2702
Merit: 2449


https://JetCash.com


View Profile WWW
August 06, 2019, 07:12:51 AM
 #8

I'm looking forward to switching to the new Huawei OS that Trump forced them to develop. Smiley

It will be another step towards freeing myself from Google et al.

Offgrid campers allow you to enjoy life and preserve your health and wealth.
Save old Cars - my project to save old cars from scrapage schemes, and to reduce the sale of new cars.
My new Bitcoin transfer address is - bc1q9gtz8e40en6glgxwk4eujuau2fk5wxrprs6fys
tbct_mt2
Hero Member
*****
Offline Offline

Activity: 2310
Merit: 835



View Profile WWW
August 06, 2019, 07:18:39 AM
 #9

I'm looking forward to switching to the new Huawei OS that Trump forced them to develop. Smiley

It will be another step towards freeing myself from Google et al.
Do you think that it will provides better security? I don't think so, because China (governments, locals, companies) tend to not play fairly in so many aspects, from political, human rights, commercial, technologies, and others. Personally, I do not believe in China and Chinese companies.

.
 airbet 
██
██
██
██
██
██
██
██
██
██
██
██
██
 .

▄████▄▄▄██████▄
███████████████
███████████████
███████▀▀▀▀████
██████████████
▀███▀███████▄██
██████████▄███
██████████████
███████████████
███████████████
██████████████
█████▐████████
██████▀███████▀
▄███████████████▄
████████████████
█░██████████████
████████████████
████████████████
█████████████████
█████████████████
███████░█░███████
████████████████
█████████████████
██████████████░█
████████████████
▀███████████████▀
.
.
.
.
██▄▄▄
████████▄▄
██████▀▀████▄
██████▄░░████▄
██████████████
████████░░▀███▌
░████████▄▄████
██████████████▌
███░░░█████████
█████████░░░██▀
░░░███████████▀
██████░░░██▀
░░▀▀███▀

   
|.
....
██
██
██
██
██
██
██
██
██
██
██
██
██
.
 PLAY NOW 
Juggy777
Hero Member
*****
Offline Offline

Activity: 2646
Merit: 686


View Profile
August 06, 2019, 07:32:47 AM
 #10

If you are an Android user, you need to scan your device to ensure that you have not been compromised by a potent virus called the 'Anubis' virus.

This virus has the ability to render 2FA void via a MITM (man-in-the-middle) attack.

In addition, this virus could even render certain encryptions (i.e., DSAs like ECDSA) via a timing attack.

This virus is extremely sophisticated and it is targeting blockchain users specifically.

Make sure that you read this report. This was put out with particular urgency because it does not appear that this has been covered in the blockchain sphere at all for some reason. There are numerous cybersecurity experts in other sectors of this tech space that have written about this virus (including ZDnet as recently as this month).

Below is the link to the first report:

https://blog.zerononcense.com/2019/07/27/anubis-virus-major-android-virus-attacking-bitfinex-binance-exchange-apps-and-others-pt-1/

These days most all android phones have virus scanners inbuilt in them to check for potential viruses, and the process is automatically done hence most of the users should be safe.
It is better to stay away from using mobile apps to trade. You can install those apps, to observe prices, but should not log in your accounts with mobile apps and trade directly on apps.
I only log in my accounts and trade on computers.

I completely disagree with your statement because computer wallet hacking is more reported than mobile wallet hacking, eg Electrum desktop users were effected in recent hacks, but their mobile users were not effected.

I'm looking forward to switching to the new Huawei OS that Trump forced them to develop. Smiley

It will be another step towards freeing myself from Google et al.

@JetCash this move of yours is like trading USD for EURO and feeling safe that your money won’t loose it’s value, but we both know it’ll. The only software that gave complete privacy was BlackBerry, why do you think all big influential people always have one blackberry phone with them.

Link: https://www.cashify.in/blog/barack-obama-and-his-blackberry/
mk4
Legendary
*
Offline Offline

Activity: 2744
Merit: 3830


Paldo.io 🤖


View Profile
August 06, 2019, 08:43:54 AM
 #11

I'm looking forward to switching to the new Huawei OS that Trump forced them to develop. Smiley

It will be another step towards freeing myself from Google et al.

If you don't mind flashing OSs on your phone and a bit of minor bugs here and there depending on your phone model, I suggest taking a look at LineageOS, which was previously known as CyanogenMOD. Pretty famous OS on the mobile custom ROM community. Also, it's open source!

Check it out: https://lineageos.org/

█▀▀▀











█▄▄▄
▀▀▀▀▀▀▀▀▀▀▀
e
▄▄▄▄▄▄▄▄▄▄▄
█████████████
████████████▄███
██▐███████▄█████▀
█████████▄████▀
███▐████▄███▀
████▐██████▀
█████▀█████
███████████▄
████████████▄
██▄█████▀█████▄
▄█████████▀█████▀
███████████▀██▀
████▀█████████
▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀▀
c.h.
▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄▄
▀▀▀█











▄▄▄█
▄██████▄▄▄
█████████████▄▄
███████████████
███████████████
███████████████
███████████████
███░░█████████
███▌▐█████████
█████████████
███████████▀
██████████▀
████████▀
▀██▀▀
Jet Cash
Legendary
*
Offline Offline

Activity: 2702
Merit: 2449


https://JetCash.com


View Profile WWW
August 06, 2019, 08:56:42 AM
 #12


@JetCash this move of yours is like trading USD for EURO and feeling safe that your money won’t loose it’s value, but we both know it’ll. The only software that gave complete privacy was BlackBerry, why do you think all big influential people always have one blackberry phone with them.

For me, The privacy issues are more of an annoyance than a major issue. The biggest problem is the number of apps and other unwanted routines that Google keeps installing and updating. I want a mobile phone that works for me, and not for Google.

Offgrid campers allow you to enjoy life and preserve your health and wealth.
Save old Cars - my project to save old cars from scrapage schemes, and to reduce the sale of new cars.
My new Bitcoin transfer address is - bc1q9gtz8e40en6glgxwk4eujuau2fk5wxrprs6fys
Lucius
Legendary
*
Offline Offline

Activity: 3220
Merit: 5629


Blackjack.fun-Free Raffle-Join&Win $50🎲


View Profile WWW
August 06, 2019, 12:30:51 PM
 #13

It seems like someone has put a lot of effort into programming of this virus, and things like this definitely create a lot of distrust in using mobile apps for banking and cryptocurrency. For now, the only defense against this virus is maximum caution when downloading something from Google Play, since this is identified as a major source of potential infection.

But when I done some reasearch about this virus, it's not really about something completely new, but the most likely modified version of virus which is first detected 12 years ago.

These Anubis samples have a list of 188 banking- and finance-related apps to steal user information from. Many of these apps are in Poland, Australia, Turkey, Germany, France, Italy, Spain, U.S., and India. The malware’s C&C servers are distributed across different countries, some abusing a cloud service, while others abusing an Internet data center (IDC) server. The malware operators are also using social media channels like Twitter and Google short links to send commands since 2014. The registration date of one of the accounts suggests the attacker has probably been active for about 12 years.



I'm looking forward to switching to the new Huawei OS that Trump forced them to develop. Smiley
It will be another step towards freeing myself from Google et al.

It all comes down to who spies on you, now it is Google, but if you use one day smartphone with Huawei OS, then China will do same thing USA is doing today. Spying competition between the great powers always breaks over the back of ordinary users, and therefore we can say that the age of privacy that existed 20-30 years ago is a thing of the past.

.
.BLACKJACK ♠ FUN.
█████████
██████████████
████████████
█████████████████
████████████████▄▄
░█████████████▀░▀▀
██████████████████
░██████████████
████████████████
░██████████████
████████████
███████████████░██
██████████
CRYPTO CASINO &
SPORTS BETTING
▄▄███████▄▄
▄███████████████▄
███████████████████
█████████████████████
███████████████████████
█████████████████████████
█████████████████████████
█████████████████████████
███████████████████████
█████████████████████
███████████████████
▀███████████████▀
█████████
.
JeromeTash
Legendary
*
Offline Offline

Activity: 2128
Merit: 1210


Heisenberg


View Profile
August 06, 2019, 12:31:46 PM
 #14

All kinds of devices are vulnerable to attacks if we are not careful on how we use them in online environments. Mobile devices are more vulnerable than computers, that what I want to emphasize. I do installed those apps but just to observe price, nothing more. I will keep sticking with my computers for tradings. If I don't have connection to computers, don't trade. In my opinion, it is more important to protect my funds, rather than increase them with some types of risks.

In what way are mobile devices more "vulnerable" than computers?

Come on, we all know that incidents of Malware attacks on computers especially those that run Windows are much more than those documented on mobile devices... But that's not the point.

My point is it's up to you to be security conscious to avoid such attacks, whether you are using PC or Phone. Just download necessary and egit apps and stay away with the junk.

I do trading on my phone when am not with my computer and its pretty easy. Screen size is 6 inches and I can even view and analyze graphs so easily using the tradingview app.

█████████████████████████
██
█████▀▀███████▀▀███████
█████▀░░▄███████▄░░▀█████
██▀░░██████▀░▀████░░▀██
██▀░░▀▀▀████████████░░▀██
██░░█▄████▀▀███▀█████░░██
██░░███▄▄███████▀▀███░░██
██░░█████████████████░░██
██▄░░████▄▄██████▄▄█░░▄██
██▄░░██████▄░░████░░▄██
█████▄░░▀███▌░░▐▀░░▄█████
███████▄▄███████▄▄███████
█████████████████████████
.
.ROOBET 2.0..██████.IIIIIFASTER & SLEEKER.██████.
|

█▄█
▀█▀
████▄▄██████▄▄████
█▄███▀█░░█████░░█▀███▄█
▀█▄▄░▐█████████▌▄▄█▀
██▄▄█████████▄▄████▌
██████▄▄████████
█▀▀████████████████
██████
█████████████
██
█▀▀██████████████
▀▀▀███████████▀▀▀▀
|.
    PLAY NOW    
jseverson
Hero Member
*****
Offline Offline

Activity: 1834
Merit: 759


View Profile
August 07, 2019, 02:07:39 AM
 #15

In what way are mobile devices more "vulnerable" than computers?

It probably has nothing to do with inherent security features, but the average person uses their phone far more than their PC, so missteps (like connecting to random wifi spots, random people spying on your screen, etc.) are more probable. It's also more vulnerable to physical attacks like theft.

That is not to say that they're vulnerable, of course, just that users need to take extra precautions when using them.

tbct_mt2
Hero Member
*****
Offline Offline

Activity: 2310
Merit: 835



View Profile WWW
August 07, 2019, 03:25:52 AM
 #16

It probably has nothing to do with inherent security features, but the average person uses their phone far more than their PC, so missteps (like connecting to random wifi spots, random people spying on your screen, etc.) are more probable. It's also more vulnerable to physical attacks like theft.

That is not to say that they're vulnerable, of course, just that users need to take extra precautions when using them.
Thank you for contributing good points.
- People tend to less prepare security tools for their mobile devices. At least in my nation, and from what I observed.
- People might more probably to lose their phones on restaurant, on taxi cab, hotels, etc. due to carelessness.
- People tend to more carelessly when using mobile devices, clicking, downloading, surfing, etc. They likely do it or their children do it when they have rights to use their parents' phones.
These reasons are only true with careless people; and careful guys are excluded.  Smiley

.
 airbet 
██
██
██
██
██
██
██
██
██
██
██
██
██
 .

▄████▄▄▄██████▄
███████████████
███████████████
███████▀▀▀▀████
██████████████
▀███▀███████▄██
██████████▄███
██████████████
███████████████
███████████████
██████████████
█████▐████████
██████▀███████▀
▄███████████████▄
████████████████
█░██████████████
████████████████
████████████████
█████████████████
█████████████████
███████░█░███████
████████████████
█████████████████
██████████████░█
████████████████
▀███████████████▀
.
.
.
.
██▄▄▄
████████▄▄
██████▀▀████▄
██████▄░░████▄
██████████████
████████░░▀███▌
░████████▄▄████
██████████████▌
███░░░█████████
█████████░░░██▀
░░░███████████▀
██████░░░██▀
░░▀▀███▀

   
|.
....
██
██
██
██
██
██
██
██
██
██
██
██
██
.
 PLAY NOW 
hatshepsut93
Legendary
*
Offline Offline

Activity: 2954
Merit: 2145



View Profile
August 08, 2019, 05:30:10 PM
 #17


For me, The privacy issues are more of an annoyance than a major issue. The biggest problem is the number of apps and other unwanted routines that Google keeps installing and updating. I want a mobile phone that works for me, and not for Google.

And with Huawei you'll get a phone that works for the Chinese government, not you.

It seems like someone has put a lot of effort into programming of this virus, and things like this definitely create a lot of distrust in using mobile apps for banking and cryptocurrency. For now, the only defense against this virus is maximum caution when downloading something from Google Play, since this is identified as a major source of potential infection.

But when I done some reasearch about this virus, it's not really about something completely new, but the most likely modified version of virus which is first detected 12 years ago.


It's probably the best to have 2 phones - one for finances, important accounts, work, and the other for entertainment. The first one can be pretty simple and doesn't need to be replaced every few years.

.BEST.CHANGE..███████████████
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
██
███████████████
..BUY/ SELL CRYPTO..
nofreecoins
Jr. Member
*
Offline Offline

Activity: 111
Merit: 1


View Profile
August 08, 2019, 05:33:10 PM
 #18

Clicking on the very site you just shared OP could be a mistake, but sure nothing gets downloaded.
Pages: [1]
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.19 | SMF © 2006-2009, Simple Machines Valid XHTML 1.0! Valid CSS!