Access member only content, take part in discussions with comments on blogs, news and reviews and receive all the latest security industry news directly to your inbox. Join now for free.
Processing registration... Please wait.
This process can take up to a minute to complete.
A confirmation email has been sent to your email address - SUPPLIED EMAIL HERE. Please click on the link in the email to verify your email address. You need to verify your email before you can start posting.
If you do not receive your confirmation email within the next few minutes, it may be because the email has been captured by a junk mail filter. Please ensure you add the domain @scmagazine.com.au to your white-listed senders.
Google will not remove 13 Android applications dubbed malcious by security firm Symantec.
The applications included action, adventure and puzzle games that had data stealing capabilities, according to Symantec.
The security company said the apps included the software development kit (SDK) dubbed Appherhand that installed a search bar on the user's phone and allowed the distributors to change the user's home page and add and remove bookmarks and shortcuts.
Symantec security response director Kevin Haley said questioned the legitimacy of Apperhand.
"I'm not sure why you would need to pull someone's bookmarks," Haley told SCMagazine.com."I'm not aware of the benefit."
The apps contained a trojan dubbed by Symantec as Counterclank and have been downloaded between one and five million times, Haley said.
Apperhand was similar to an SDK present in other apps that appeared recently in the Android Market.
They carried malicious code dubbed Plankton which provided distributors with remote access to a users' device.
Google temporarily suspended the apps but later found they were not harmful.
"You should be aware what you're getting into when you download these apps, and if you don't want them taking these actions on your phone, then I think you should remove them," Haley said.
Google would not remove the apps stating they did not violate its terms of service, Symantec said.
Lookout Mobile Security said it does not consider the applications malware but "an aggressive form of [an] ad network" which "should be taken seriously".
As the mobile device space continues to mature, security companies and platform providers will be forced to sort out applications worth flagging.
Haley likened this to the early days of the PC industry when spyware programs routinely were considered innocuous.
"Maybe we don't have all the nomenclature set yet in the Android or malware space."
"We're building consensus on what these things ought to be called."
This article originally appeared at scmagazineus.com
To begin commenting right away, you can log in below or register an account if you don't yet have one. Please read our guidelines on commenting. Offending posts will be removed and your access may be suspended. Abusive or obscene language will not be tolerated. The comments below do not necessarily reflect the views or opinions of SC Magazine, Haymarket Media or its employees.