By Eduard Kovacs on August 20, 2014
The complete source code for the Android remote access Trojan (RAT) called Dendroid has been leaked online, which researchers have found contains several vulnerabilities.
The existence of Dendroid (Android.Dendoroid) was first reported by Symantec in March when the threat was causing a buzz on underground forums. Dendroid is a HTTP RAT that has a complex control panel and an APK binder that allows cybercriminals to repackage and trojanize legitimate Android apps with the malware.
The Trojan was sold for a one-time fee of $300, for which customers got features that enabled them to delete call logs, call specified phone numbers, open websites, record calls and audio, intercept messages, open applications, initiate denial-of-service (DoS) attacks, take pictures and record video. In addition, the seller promised 24/7 support.
The source code for Dendroid, its control panel, the APK binder and updates for bug fixes were put up for sale on hacker forums in late July. It was initially sold for 1 Bitcoin, but the seller later made a 50% discount. The code was then leaked on Friday to GitHub and is accompanied by a "readme" file that provides a list of requirements needed to run the threat, along with instructions on how to set it up.
SecurityWeek/ Full Article Here/ http://www.securityweek.com/source-code-android-rat-dendroid-leaked-online
Login to the community
No account yet? Create an account
Enter your username or e-mail address. We'll send you an e-mail with instructions to reset your password.