Researchers Create Clickjack Rootkit, Stay Ahead Of Hackers

A Research Team led by Xuxian Jiang at North Carolina University is working on discovering smartphone flaws that are inherent to the platform, in order to fix the loopholes before black hat hackers could exploit them. As a part of this research, Jiang developed a prototype rootkit which attacks the Android framework, rather than the underlying operating system kernel. Jiang found this rootkit to be capable of infecting Android 4.0.4 (Ice Cream Sandwich) as well as earlier versions.

#-Link-Snipped-#

Clickjacking is a malicious technique of tricking the user into clicking on something different from what it appears. The rootkit can attach itself to an app, and once the infected app is downloaded, the rootkit will be able to manipulate the smartphone. For example, the rootkit could hide in the phone's browser and replace it with a fake browser, stealing all the sensitive information you enter. In fact, the rootkit can hijack almost any or even all the apps on the smartphone.

This kind of attack is very sophisticated in its approach and is tailored for smartphone platforms, Jiang says. The fact that no existing mobile security was able to flag the rootkit as malicious makes it even more dangerous. Fortunately, for us, the good guys got to it first.

A video demo describing the operation of the Clickjack Rootkit is here -



Source: #-Link-Snipped-# Image Credit: #-Link-Snipped-#

Replies

You are reading an archived discussion.

Related Posts

The Galaxy series remains true to its title with the endless entries to the line, the latest of them all being the Samsung Galaxy Chat. The Galaxy Chat was announced...
Stanford Chemical Engineering Professors have developed an electrically conductive hydrogel i.e essentially a jelly that looks like biological tissues, but conducts electricity like a metal. This gel, they say, is ...
Windows 8 Pro upgrade news is making rounds. Here is a short cover about all you need to know about Windows 8 Pro upgrade. First of all, Windows 8 Pro...
Clinical Lab work may involve biohazards and dangerous tasks that need precision and accuracy. AIST and Yaskawa have developed Mahoro, an Android robot that automates lab work that is too...
Imagine a thousand glowing light bulbs floating in mid-air, supposedly over a lake. How awesome would the view be? It could now be possible to do that thanks to a...