By Emmanuel Adeleke
The Nigerian Communications Commission’s Computer Security Incident Response Team (NCC-CSIRT) has advised Nigerians to only download applications from official sites and application stores.
A statement by the Commission’s Director of Public Affairs, Reuben Muoka, on Wednesday, said NCC-CSIRT stated this in an advisory, adding that malware that steals Facebook account credentials, known as “Schoolyard Bully,” has infected over 300,000 android devices.
According to the statement, the NCC-CSIRT advisory further recommended that users double-check each application and uncheck boxes that request extra third-party downloads when installing apps downloaded from the Google Play Store and to use anti-malware applications to routinely scan their devices for malware.
“Researchers from mobile security firm, Zimperium, found several apps that transmit the “Schoolyard Bully” malware while disguising themselves as reading and educational apps with a variety of books and topics for their victims to study.
“The malicious apps were available on Google Play, yet they have already been taken down. However, they still spread via third-party Android app shops.
“The primary objective of the malware, which affects all versions of Facebook Apps for Android, is to steal Facebook account information, including the email address and password, account ID, username, device name, device RAM (Random Access Memory), and device API (Application Programming Interface).
“Furthermore, malware uses native libraries to evade detection and analysis by security software and machine learning technologies,” the statement read.
The CSIRT is the telecoms sector’s cyber security incidence centre set up by the NCC to focus on incidents in the sector and as they may affect telecoms consumers and citizens at large.
The CSIRT also works collaboratively with Nigerian Computer Emergency Response Team (ngCERT), established by the Federal Government to reduce the volume of future computer risk incidents by preparing, protecting, and securing Nigerian cyberspace to forestall attacks, and problems or related events.
Leave a Reply