This Android software secretly records your chats a year after it was launched.

This Android software secretly records your chats a year after it was launched.

An Android app that records your microphone to your intruder

 This Google Play Store software, which was first advertised as a straightforward tool for recording the screen of your smartphone, was recently hacked by a security researcher from the company ESET. It really involves malicious software that activates your device's microphone and sends recordings to a server that is controlled by bad actors.

This Android software secretly records your chats.

More than 40 000 users have downloaded the iRecorder program, which hides a spying mouse on your computer. According to a report from the company ESET, this malicious program records ambient sound every 15 minutes and sends it to a remote server.

Launched on the Google Play Store in September 2021, the program only requested the minimum number of permissions required to record the smartphone's screen, for which it was designed. But everything changes in August 2022.

A software update recently included malicious malware to the application that came from the open-source spy program AhMyth. This last one enables remote control of an Android device and access to its sensitive data. 

As a result, the iRecorder application started activating the smartphone's microphone every 15 minutes to record ambient sound and quantify it before sending it to a server under the attacker's control. This procedure was being carried out behind the user's back without them being aware of it.

An unexpected discovery

The rose pot wasn't discovered until May 2023 by Lukas Stefanko, a security researcher for the company ESET. It was noticed that the program connected to a remote server and routinely sent audio files after examining how it behaved on various devices. 
Additionally, it was discovered that the malicious code had been altered over time, indicating that the developer had become proficient in using the spying program AhMyth. This next iteration of the software is called AhRat.

Stefanko notified Google, who removed the program from the Google Play Store. However, it was already too late for the more than40 000 users who had downloaded the program and were maybe waiting for it for months.

Therefore, it is advised that if iRecorder is listed among the installed programs on your smartphone, you delete it.


Next Post Previous Post
No Comment
Add Comment
comment url