GingerMaster

{{Short description|Android platform based malware}}GingerMaster is malware that affects Android operating system version 2.3. It was first detected in August 2011.{{cite web| url=https://www.csc.ncsu.edu/faculty/jiang/GingerMaster/ |title=First Android Malware Utilizing a Root Exploit on Android 2.3 (Gingerbread)|accessdate=2011-08-18 }}

History

GingerMaster is Android malware that contains a root exploit packaged within an infected app.{{cite web| url=https://nakedsecurity.sophos.com/2011/08/22/first-malware-using-android-gingerbreak-exploit/ |title=First malware using Android Gingerbreak root exploit|date=22 August 2011 |accessdate=2011-08-22 }}{{cite web | url=http://www.eweek.com/c/a/Security/Latest-Android-Malware-Infects-Gingerbread-via-Jailbreak-Exploit-298452 | title=Latest Android Malware Infects Gingerbread via Jailbreak Exploit | accessdate=2011-08-23 }}{{Dead link|date=June 2024 |bot=InternetArchiveBot |fix-attempted=yes }} GingerMaster's Root exploit is the "KillingInTheNameOfGingerBreakzegRush"{{Cite journal|last1=Lee|first1=Hwan-Taek|last2=Kim|first2=Dongjin|last3=Park|first3=Minkyu|last4=Cho|first4=Seong-je|date=2014-12-10|title=Protecting data on android platform against privilege escalation attack|url=http://dx.doi.org/10.1080/00207160.2014.986113|journal=International Journal of Computer Mathematics|volume=93|issue=2|pages=401–414|doi=10.1080/00207160.2014.986113|s2cid=39113435 |issn=0020-7160}}

Process

GingerMaster acts to be a normal application on the users phone, and once the application is launched on an Android device, it acquires root privileges through GingerBreak on the device and then accesses sensitive data.{{cite web | url=http://www.tgdaily.com/mobility-features/58049-beware-the-android-gingermaster | title=Beware the Android Gingermaster | accessdate=2011-08-23 | archive-date=2015-10-18 | archive-url=https://web.archive.org/web/20151018211510/http://www.tgdaily.com/mobility-features/58049-beware-the-android-gingermaster | url-status=dead }} Once GingerMaster has root access it will try to install a root shell for future malicious use.

Function

GingerMaster steals data such as:

See also

References