Connect with us

Apps

Android Malware With Device Control Abilities Appears on Google Play

Published

on

Kaspersky Lab experts have discovered an unusual new Trojan being distributed through the Google Play Store. The Dvmap Trojan is capable not only of obtaining root access rights on an Android smartphone, it can also take control of the device by injecting malicious code into the system library. If successful, it can then delete root access, which helps to avoid detection. The Trojan, which has been reported to Google, has been downloaded from Google Play more than 50,000 times since March, 2017. Kaspersky Lab reported the Trojan to Google, and it has now been removed from the store.

The introduction of code injection capability is a dangerous new development in mobile malware. Since the approach can be used to execute malicious modules even with root access deleted, any security solutions and banking apps with root-detection features that are installed after infection won’t spot the presence of the malware.

However, modification of the system libraries is a risky process that can misfire. The researchers observed that the Dvmap malware tracks and reports its every move to its command and control server – although the command server didn’t respond with instructions.  This suggests that the malware is not yet fully ready or implemented.

Dvmap is distributed as a game through the Google Play Store. To bypass the store’s security checks, the malware creators uploaded a clean app to the store at the end of March, 2017.They then updated this with a malicious version for a short period of time, before uploading another clean version. In the space of four weeks they did this at least five times.

The Dvmap Trojan installs itself onto a victim device in two stages. During the initial phase, the malware tries to gain root rights on the device. If successful, it will install a number of tools, some of which carry comments in the Chinese language.  One of these modules is an application, “com.qualcmm.timeservices”, which connects the Trojan to its command and control server. However, during the period of investigation the malware did not receive any commands in return.

In the main phase of infection, the Trojan launches a “start” file, checks the version of Android installed and decides which library to inject its code into. The next step: overwriting the existing code with malicious code, can cause the infected device to crash.

The newly-patched system libraries execute a malicious module which can turn off the ‘VerifyApps’ feature.  It then switches on the setting ‘Unknown sources’ which allows it to install apps from anywhere, not just the Google Play Store. These could be malicious or unsolicited advertising apps.

“The Dvmap Trojan marks a dangerous new development in Android malware, with the malicious code injecting itself into system libraries where it is harder to detect and remove.  Users who don’t have the security in place to identify and block the threat before it breaks in have a difficult time ahead.  We believe that we have uncovered the malware at a very early stage. Our analysis shows that the malicious modules report their every move to the attackers and some techniques can break the infected devices. Time is of the essence if we are going to prevent a massive and dangerous attack,” said Roman Unuchek, Senior Malware Analyst, Kaspersky Lab.

Users concerned they may have been infected by Dvmap are advised to back up all their data and perform a factory data reset. In addition, Kaspersky Lab advises all users to install a reliable security solution, such as Kaspersky Internet Security for Android, on their device, always check that apps have been created by a reputable developer, to keep their OS and application software up-to-date, and not to download anything that looks at all suspicious or whose source cannot be verified.

Click to comment

You must be logged in to post a comment Login

Leave a Reply

Apps

Twitch Announces Major Global and MENA Product Upgrades at TwitchCon Europe 2025

Published

on

Twitch has announced a suite of significant product and service updates aimed at transforming how creators stream, monetize, and share content. The announcements were made by CEO Dan Clancy during the Opening Ceremony of TwitchCon Rotterdam 2025, the annual IRL festival celebrating Twitch’s expansive global community.

These new initiatives build on the roadmap outlined in Twitch’s 2025 open letter to its community, which prioritized streamer growth. With Twitch currently commanding over 60% of the gaming livestreaming market and viewers collectively watching an astounding average of 46 million hours of content daily, the platform continues to solidify its position at the forefront of live gaming and interactive entertainment.

This momentum is particularly evident in the MENA region, where viewership has seen a significant surge. In 2024 alone, viewers across the Middle East and North Africa spent over 209 million hours watching content on Twitch, underscoring the region’s rapidly growing appetite for livestreamed entertainment.

Today’s announcements underscore Twitch’s unwavering commitment to its creators. Key updates include the introduction of dual-format and 2K streaming in Open Beta, providing streamers with more versatile broadcasting options. To enhance monetization, custom sub gift promotions are being rolled out, offering new ways for communities to support their favorite creators.

A brand-new feature called Combos was also unveiled, alongside significant mobile app upgrades, some of which are specifically tailored to meet the needs and preferences of the MENA region’s burgeoning streaming community. “TwitchCon is our largest annual IRL gathering, bringing together our global community of streamers, viewers, and brands in a powerful way,” said Dan Clancy, CEO of Twitch, addressing the audience in Rotterdam. “This weekend is a celebration of creativity, connection, and fun. We’re introducing new tools and features to help streamers grow, including ones tailored to the MENA region.”

Clancy further emphasized the platform’s strategic focus on regional expansion, “We’ve seen strong momentum around gaming and esports, plus a rising demand for new and existing audiences. We’re excited to keep building in MENA, because when streamers thrive, so do the communities around them.”

Continue Reading

Apps

Canva Outage: Company Blames Internal Error for Widespread Disruption

Published

on

Popular graphic design platform Canva suffered a major global outage on Monday, leaving thousands of users unable to access accounts, load projects, or use key features. The disruption, which began earlier in the day, quickly spiraled into a trending topic on social media as frustrated designers and businesses reported widespread login failures and error messages.

Canva’s homepage displayed a notice acknowledging the issue: ‘There was an issue on our end,’ confirming the problem stemmed from internal servers rather than user-side connectivity. The company has since released an official statement attributing the outage to an ‘internal error’ and is working to restore full functionality. Stay tuned for updates.

Continue Reading

Apps

Madrasa and TikTok Partner to Launch STEM Feed in UAE

Published

on

Madrasa e-learning platform, part of the Mohammed bin Rashid Al Maktoum Global Initiatives (MBRGI), has partnered with TikTok as the latter launched its globally successful STEM Feed in the UAE. This partnership brings the largest free Arabic language educational library to the platform, marking a key milestone in both organizations’ shared commitment to enhancing learning opportunities, promoting innovation, and enriching communities across the region.

The announcement was made during the signing of a cooperation agreement attended by His Excellency Saeed Al Eter, Assistant Secretary General at MBRGI; Dr. Waleed Al Ali, General Coordinator of the Madrasa.org online platform; and Kinda Ibrahim, Regional General Manager of Operations for TikTok Middle East, Turkey, Africa, Pakistan, and South Asia. The partnership aims to deliver high-quality, verified content focused on science, technology, engineering, and mathematics to millions of Arab youth through innovative formats that resonate with today’s learners.

Dr. Waleed Al Ali said MBRGI continues to expand its strategic partnerships and initiatives to spread education and knowledge, reflecting the vision of His Highness Sheikh Mohammed bin Rashid Al Maktoum, Vice President and Prime Minister of the UAE and Ruler of Dubai, which emphasizes education as fundamental to building a new Arab generation capable of positive societal change. MBRGI is also keen to implement the directives by His Highness Sheikh Mohammed bin Rashid, for the development of a world-class educational environment that empowers Arab students with modern knowledge and skills, fostering their creativity and contribution to a knowledge-based future.

“Launching the largest free Arabic educational video library on TikTok marks a new phase for Madrasa in advancing self-learning and providing Arab students with essential knowledge. This initiative offers accessible, high-quality content through an innovative approach that blends structured learning with engaging presentation, leveraging the reach and appeal of social media and educational videos.”

Dr. Al Ali noted that this launch significantly contributes to Madrasa’s success since 2018, highlighting its impressive video views, growing subscriber base, and regional and international recognition for its influential role in promoting self-learning and strengthening the Arabic language among younger generations. The partnership also reflects TikTok’s long-term strategy to amplify educational impact through strategic partnerships. It delivers STEM topics while sparking curiosity, promoting creativity and inspiring youth in the region to pursue STEM careers.

Kinda Ibrahim said, “Launching the STEM Feed in the UAE furthers our mission to empower the next generation of innovators. With nearly 10 million STEM-related videos shared globally on TikTok over the past three years, it’s clear there’s a strong appetite for educational content,” she added “Partnering with MBRGI is part of TikTok’s long-term strategy to amplify educational impact through collaboration. By launching the STEM feed in UAE and through Madrasa’s largest free Arabic educational video library, we aim to encourage the community to explore, experiment, and expand their knowledge. This aligns with our shared vision of prioritizing education as a key driver of community development.”

This partnership expands Madrasa’s mission to transform Arabic into a language of modern science and learning. Since its launch in 2018, the platform has offered more than 7,000 interactive lessons across STEM subjects and Arabic language studies, earning international accolades from organizations like UNESCO and ESCWA. The STEM Feed is now available to all users, with users aged 18 and above able to activate it by going to their app settings, selecting Content Preferences, and turning on the STEM Feed. The feed will feature leading STEM creators as well as content from partners like Majarra, a trusted provider of high-quality Arabic content.

To maintain the quality and integrity of the STEM Feed, all content will be carefully reviewed by TikTok’s internal teams in collaboration with Common Sense Networks and Poynter. These partnerships ensure that every piece of STEM content is thoroughly vetted for both appropriateness and accuracy. Common Sense Networks will evaluate the educational value of the content, while Poynter will verify the reliability of the information presented. Any content that does not meet these standards will not be featured.

Together, MBRGI and TikTok are paving the way for knowledge-based societies by making STEM education accessible, entertaining, and impactful. They are empowering young people to explore, experiment, and innovate one short video at a time.

Continue Reading
Advertisement