Security vendors debunk Google's attitude toward Android malware

Security vendors debunk Google's attitude toward Android malware

By Lucian Constantin | Nov 30, 2011

Antivirus experts disagree with Chris DiBona, Google's open-source programs manager, who recently said that there is no virus problem on the Android platform and that companies selling anti-malware software for mobile operating systems are charlatans.


 
"Yes, virus companies are playing on your fears to try to sell you bs protection software for Android, RIM and IOS," DiBona said in a post on Google+. "They are charlatans and scammers. If you work for a company selling virus protection for Android, RIM or IOS you should be ashamed of yourself," he added.


 
According to DiBona, none of the major smartphone operating systems has a virus problem that is similar to what the Windows and Mac ecosystems experience.


 
The open-source advocate, who manages Google's developer outreach programs and oversees the company's license compliance practices, dismissed the Android threats reported by the security industry until now as little things that didn't get very far because of the platform's sandbox model and other architectural features.


 
Security experts disagree with this assessment and point out that the levels of Android malware have registered a huge increase this year.


 
"Today malware for Android devices is one of the biggest issues in [the] mobile malware area," said Denis Maslennikov, a senior malware analyst at Kaspersky Lab, in an email interview. "The growth of numbers of malware for Android is significant in [the] last 5 months. In June we've discovered 112 modifications of Android malware, in July - 212; August - 161; 559 in September; 808 in October," he added.


 
A similar trend was observed by other antivirus vendors, with Trend Micro reporting a 1410 percent increase in the number of Android threats from January to July 2011. "The more important figure is not the total number of malware, but the rate of increase of that malware quarter on quarter and year on year. That demonstrates current, active and sustained criminal interest in the mobile platform," said Rik Ferguson, the company's director of security research and communication.


 
The majority of Android malware threats consist of Trojans, not traditional self-replicating viruses or worms. However, these can be just as damaging if not even more so, the security experts said.


 
"It depends on your definition of damaging. Is it recording and uploading voice conversations to a remote server, is it stealing email and text message histories, or is it running up huge bills through premium-rate text and voice scams? I guess it all depends on the point of view of the victim and the fallout of infection," Ferguson said.


 
However, the security issues on the Android platform are not limited to malware alone. Like any computer users who access email, websites and other common services, smartphone owners are vulnerable to platform-independent threats like phishing or advance-fee scams.


 
"What he [DiBona] is missing is that mobile security tools (like ours) do much more than just antivirus. antitheft, remote lock, backup, parental control, Web filter -- these features are the main reason why people buy mobile security products. They get antivirus as a bonus," said Mikko Hypponen, the chief research officer at antivirus firm F-Secure.


 
 
 

Add comment

Post a Comment

The content of this field is kept private and will not be shown publicly.
Verification Code
This question is for testing whether you are a human visitor and to prevent automated spam submissions.
 

knowledge_central_tab

 
 
Knowledge Central
Trusted Mobility Index
The mobile ecosystem of devices, services and networks is at a critical inflection point.While the mobile revolution is unleashing massive opportunities in both emerging and mature economies, it is also increasing in complexity and confusion. The reality is the lightning-fast adoption of powerful, smart devices is outpacing society’s ability to secure them. Today, trust in mobility hangs in the balance.
The state of the Internet, Q4, 2011
Geography appears to play a role in frequency of observed attacks on specific ports. For example, Port 23 (Telnet) is a favorite target for attacks observed to be originating from South Korea and Turkey, where it accounted for more than five times the number of attacks targeting the next most popular port (445 in both countries). Other instances of geography-based port targeting include observed attacks centered on Port 1433 (Microsoft SQL Server) in China and on Port 80 (WWW/HTTP) in Indonesia.
 
 
 
HID Global deploys a centralized, web-based IP access control solution at Fuxi Power Plant
Unable to meet the needs for real-time monitoring with its traditional patrol system, China's Fuxi Power Plant has deployed HID Global's VertX V2000.
StubHub: How to spot fraud before it happens
Whenever a list of log-on credentials is dumped onto the Web, retailers get hit with waves of automated attacks. Here's how ticket marketplace StubHub fights the threat.