Android app from China executed 0-day exploit on millions of devices
Briefly

Android apps digitally signed by China's third-biggest e-commerce company exploited a zero-day vulnerability that allowed them to surreptitiously take control of millions of end-user devices to steal personal data and install malicious apps, researchers from security firm Lookout have confirmed.The malicious versions of the Pinduoduo app were available in third-party markets, which users in China and elsewhere rely on because the official Google Play market is off-limits or not easy to access.
Read at Ars Technica
[
add
]
[
|
|
]