https://www.youtube.com/watch?v=31D94QOo2gY
There are only so many places it can be hiding if it's surviving a factory reset.
--Guy who is undoubtedly vastly underestimating the problem given that it's resisted AV vendors for a while
https://www.youtube.com/watch?v=31D94QOo2gY
There are only so many places it can be hiding if it's surviving a factory reset.
--Guy who is undoubtedly vastly underestimating the problem given that it's resisted AV vendors for a while
Based on the reddit thread at least one of the devices is from a no-name manufacturer.
https://www.reddit.com/r/antivirus/comments/bj6isa/xhelper_k...
Writing to /system requires it to be mounted read/write and permissions to do so, so they'd need a root exploit in order to pull it off, but there's quite a few to choose from especially as devices age and given that they're doing this outside Play Store where Google won't pick them up.
I'm just crossing my fingers advanced users don't lose the ability to side-load apps over bad publicity like this, maybe they should make it harder to enable though.
It seems like every time I hope for a reasonable solution like this I get let down substantially though.
IMO There is a slight flaw to how this question is worded. It's not that they block you from running code that you need to be root to run (you'll just get insufficient perms errors) it's just that you're not root. You could write the code to write to /system, and it will run it just will not work. Thus, you need to utilize some sort of local privilege escalation. That is it's own equally semi-sticky wicket.
And recovery is already a stretch IMO.
Also, an anti virus company saying they can't understand how a virus remains infected after removal is interesting.
How uselessly cynical.
I've followed the VX scene for years (it died long ago) and there has never been shortage of new malware.
Even if we wanted to give some credit to the theory, which type of virus would the AV companies develop? Something trivial, that requires a variation of a signature to detect? Or something extremely complex, that requires month of work, and that slows down the AV engine because it's algorithmically complex to detect?
None of this makes any sense. The truth is very simple - malware has always been an interesting subject, and writing viruses always had a subversive appeal to young rebels.
Darn kids.
This analogy is not helping your case at all. It's not unheard of for police to plant evidence for such purposes. It's also been proven that law enforcement has been willfully using technology having high rates of false positives for things like drug testing to bring real charges against otherwise innocent people.
https://www.washingtonpost.com/nation/2019/07/11/florida-cop...
So very realistic then?
Or have you not encountered the numerous incidents where cops plant and manufacture evidence to frame people for various reasons such as increasing their numbers for a promotion or bad culture leading to quotas for arrests/tickets/etc.?
https://www.newyorker.com/humor/daily-shouts/l-p-d-libertari...
More like saying private 'protection companies' commit crimes so they can get you to pay for their 'protection'.
I didn't say they created malware, no, but they certainly wave that flag when someone finds some. And it's certainly in their interest to pursue all of these alternatives, or even have a bad third party violate THEM to do so. The money is on the table. Do they take it? They'd be foolish not to.
1. http://www.techradar.com/us/news/software/security-software/...
2. https://news.ycombinator.com/item?id=13079569
3. https://www.wsj.com/articles/russian-hackers-scanned-network...
4. https://wiki.mozilla.org/CA:Symantec_Issues
5. https://www.howtogeek.com/199829/avast-antivirus-was-spying-...
etc...