{"id":14779,"date":"2019-03-07T08:00:14","date_gmt":"2019-03-07T16:00:14","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2019\/03\/07\/news-8528\/"},"modified":"2019-03-07T08:00:14","modified_gmt":"2019-03-07T16:00:14","slug":"news-8528","status":"publish","type":"post","link":"http:\/\/www.palada.net\/index.php\/2019\/03\/07\/news-8528\/","title":{"rendered":"A Mobile App Scanner is Not Just Another App"},"content":{"rendered":"<p><strong>Credit to Author: Trend Micro| Date: Thu, 07 Mar 2019 15:00:28 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"200\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-300x200.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-300x200.jpg 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-768x512.jpg 768w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-640x426.jpg 640w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-440x293.jpg 440w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-380x253.jpg 380w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800.jpg 800w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>Mobile applications assist us mightily with our daily tasks. They increase our productivity with anywhere, anytime, high-functioning tools, and they help us communicate and share information with family members, friends, and co-workers. Every day, the rapidly evolving app market brings us more apps to cater to our needs. Sound good? Well, it is! But sometimes, there\u2019s a big gotcha.<\/p>\n<p>&nbsp;<\/p>\n<p>&nbsp;<\/p>\n<p><strong>Are mobile apps secure?<\/strong><\/p>\n<p>Although Apple\u2019s App Store for iOS performs a pretty rigorous app vetting process to verify compliance with Apple\u2019s requirements, you can\u2019t automatically assume that Android apps are equally as safe, largely because <a href=\"https:\/\/dzone.com\/articles\/the-approval-process-android-vs-iphone\">the app vetting process<\/a> for Google Play is considerably looser, while for third-party Android app stores it\u2019s looser still or nonexistent. Some mobile apps are compiled to perform suspicious functions, as with malware apps that have the capability to copy real-time data from the user\u2019s device and transmit it to the cybercriminal\u2019s servers. Malware apps are programs that execute in parallel to the processes running in the background of the mobile OS, and they can stay alive and may remain undetectable to the average user during normal use of the device.<\/p>\n<p>Unfortunately, <a href=\"https:\/\/www.gdatasoftware.com\/blog\/2018\/11\/31255-cyber-attacks-on-android-devices-on-the-rise\">malicious Android mobile apps<\/a> and <a href=\"https:\/\/www.trendmicro.com\/vinfo\/us\/security\/research-and-analysis\/threat-reports\/roundup\/2017-mobile-threat-landscape\">mobile malware threats<\/a> continue to proliferate, especially if there\u2019s a compromise or attack against an app store itself, when the opportunity to turn legitimate apps into bad, rogue versions, as with fake banking apps, is at its highest. But it doesn\u2019t stop there. Another form of malicious functionality includes injection of fake websites into the victim\u2019s mobile browser in order to collect sensitive information, acting as a starting point for attacks on other devices the user owns. This type of behavior supports phishing attacks, or is a consequence of it. And because mobile apps are usually more precise than desktop apps with providing continuous device location information, personal health metrics, and pictures and audio about you, you can be far more exposed through mobile apps than you might expect.<\/p>\n<p>Mobile apps can also sense and store information, including your personally-identifiable information (PII), in a variety of ways, a situation made dangerous through excessive granting of privileges and privacy rights given away right at the beginning, when you install the apps. You may have overlooked the fact that the app is requesting access to the camera or the microphone, or the app may be collecting and storing sensitive information that\u2019s not consistent with its user license agreement or its description of purpose. You might have a security risk on your device because the app may be scanning or accessing files that are not part of its own directory\u2014an indicator of malicious activity. And though many apps are advertised as being free to consumers, the hidden cost of these apps may be the selling of your \u201cuser profile\u201d to marketing companies or online advertising agencies.<\/p>\n<p>Finally, apps may also contain software vulnerabilities, right in the code, which are susceptible to attack. Such vulnerabilities may also be exploited by an attacker to gain unauthorized access to personal data and sensitive information.<\/p>\n<p><strong>Protect yourself from mobile app threats<\/strong><\/p>\n<p>Your best defense against malicious apps and their nefarious cousins is to install a mobile security app with a strong app scanner onto your device. Trend Micro Mobile Security for Android, for example, can provide a level of confidence that the applications you install on your mobile device are free from potential threats, privacy violations, and vulnerabilities. Its Security Scan taps into a service in the cloud, powered by Trend Micro Mobile App Reputation Service (MARS), that employs machine-learning technology to check the latest information and reputation of both well-known and unknown apps associated with any risks. MARS is paired with the local scanner on the device\u2014which uses a combination of <em>static analysis,<\/em> (which examines the apps\u2019 source code and binary code) and <em>dynamic analysis<\/em> (which operates by executing a program using a set of input use cases to analyze the programs\u2019 runtime behaviors)\u2014to examine the apps you wish to download, or those already on your device, for any threats.<\/p>\n<p>That\u2019s right: Trend Micro Mobile Security\u2019s scan uses advanced inspection and classification technologies that are capable of scanning apps even <em>before<\/em> they\u2019re downloaded and installed from Google Play. The pre-installation scan detects malicious and potentially unwanted apps and warns you against their installation right from the Google Play store. Apps that are already installed may be also manually scanned on-demand for threats, and if Trend Micro Security discovers anything suspicious, it gives you the option to uninstall the app. This means side-loaded apps (which are installed when an app\u2019s APK is downloaded from either a USB device or a link from a forum or website) can be checked by Trend Micro Mobile Security for threats and malicious behavior\u2014again using the MARS database in partnership with the local signature and the behavior analysis functions. Once found to be malicious, the side-loaded app can be uninstalled.<\/p>\n<p><strong>Trend Micro Mobile Security\u2019s proven track record<\/strong><\/p>\n<p>In short, Trend Micro Mobile Security provides total app protection for your mobile devices, helps uncover potential threats, and provides much-needed software assurance when you install Android applications. It monitors how applications interact with your data and ensures that the apps you install are secure. Its app scanning capability is one key reason among others that Trend Micro Mobile Security consistently gets top scores for malware detection and usability from independent labs such as <a href=\"https:\/\/www.av-test.org\/en\/antivirus\/mobile-devices\/android\/november-2018\/trend-micro-mobile-security-10.1-184421\/\">AV-TEST<\/a>.<\/p>\n<p>Trend Micro Mobile Security for Android, with its industry-leading Mobile App Reputation Service and Security Scan, is your best defense against malicious, fake, and infected apps.<\/p>\n<p>For more information or to buy Trend Micro Mobile Security, both for Android and iOS, go to <a href=\"https:\/\/www.trendmicro.com\/en_us\/forHome\/products\/mobile-security.html\">Trend Micro Mobile Security Solutions<\/a>.<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/a-mobile-app-scanner-is-not-just-another-app\/\">A Mobile App Scanner is Not Just Another App<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n<p><a href=\"https:\/\/blog.trendmicro.com\/a-mobile-app-scanner-is-not-just-another-app\/\" target=\"bwo\" >http:\/\/feeds.trendmicro.com\/TrendMicroSimplySecurity<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><strong>Credit to Author: Trend Micro| Date: Thu, 07 Mar 2019 15:00:28 +0000<\/strong><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" width=\"300\" height=\"200\" src=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-300x200.jpg\" class=\"webfeedsFeaturedVisual wp-post-image\" alt=\"\" style=\"float: left; margin-right: 5px;\" srcset=\"https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-300x200.jpg 300w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-768x512.jpg 768w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-640x426.jpg 640w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-440x293.jpg 440w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800-380x253.jpg 380w, https:\/\/blog.trendmicro.com\/wp-content\/uploads\/2019\/02\/20180413045408232-727-gAZrKhQ-800.jpg 800w\" sizes=\"auto, (max-width: 300px) 100vw, 300px\" \/><\/p>\n<p>Mobile applications assist us mightily with our daily tasks. They increase our productivity with anywhere, anytime, high-functioning tools, and they help us communicate and share information with family members, friends, and co-workers. Every day, the rapidly evolving app market brings us more apps to cater to our needs. Sound good? Well, it is! But sometimes,&#8230;<\/p>\n<p>The post <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\/a-mobile-app-scanner-is-not-just-another-app\/\">A Mobile App Scanner is Not Just Another App<\/a> appeared first on <a rel=\"nofollow\" href=\"https:\/\/blog.trendmicro.com\"><\/a>.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10413],"tags":[11200,10789,21166],"class_list":["post-14779","post","type-post","status-publish","format-standard","hentry","category-security","category-trendmicro","tag-av-test","tag-consumer","tag-mobile-app-reputation"],"_links":{"self":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/14779","targetHints":{"allow":["GET"]}}],"collection":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=14779"}],"version-history":[{"count":0,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/14779\/revisions"}],"wp:attachment":[{"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=14779"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=14779"},{"taxonomy":"post_tag","embeddable":true,"href":"http:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=14779"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}