Sunday, December 29, 2024
HomeMalwareAndroid Cryptocurrency Mining Malware Infecting Amazon Fire TV & Other Amazon Devices

Android Cryptocurrency Mining Malware Infecting Amazon Fire TV & Other Amazon Devices

Published on

SIEM as a Service

Android-based cryptocurrency mining malware now started infecting Amazon Fire TV & Fire TV Stick Devices.

It doesn’t specifically target the Amazon devices but Amazon Fire TV devices are running with an Android operating system so the cryptocurrency malware infection spreading across the Amazon devices.

Multiple Fire TV device owners are facing this infection while they are streaming media players and many compliant are registered in XDA forums.

- Advertisement - SIEM as a Service

This Mining Malware named as  ADB.Miner that was discovered earlier this year and it rapidly spreading through Android-based devices.

In this case, A particular version of this Mining malware started appearing on Amazon devices and installs itself as an app called “Test” with the package name “com.google.time.timer”. 

Once the malware penetrated to the device, it consumes the infected device resources and utilizes the cryptocurrency mining process, also it tries to spread itself to other Android devices on the same network.

Amazon Fire TV Infection Process

Malware infection process starts by installing the app on Amazon Fire TV and it is still unknown that which app is installing the malicious mining file to infecting the device.

Researchers believe that malware spreading while users trying to download the Apps that used to watch pirate movies or TV shows.

According to aftvnews Once an initial device is infected, the malware can spread itself to other devices over ADB, even if those other devices never had apps sideloaded.

Initial infection is slowly started in the infected device and it slows down the system process and  Loading apps will take longer than usual.

Later Malware utilizes the device and consuming 100% of the device resources to mining the cryptocurrency.

Also, A screen that says “Test” with a green Android robot icon will also occasionally appear randomly on infected devices.

It leads to stop the video playback and apps that makes very difficult to use it normally by infected user.

Prevention Methods

To make it impossible for your Fire TV device to become infected by this malware, go to your Fire TV device’s Settings and select the “Device” menu item.

Then select “Developer options” and ensure that “ADB debugging” and “Apps from Unknown Sources” are both set to “OFF”. These settings are off by default, so if you’ve never changed them, then you have always been safe from this malware.

Balaji
Balaji
BALAJI is an Ex-Security Researcher (Threat Research Labs) at Comodo Cybersecurity. Editor-in-Chief & Co-Founder - Cyber Security News & GBHackers On Security.

Latest articles

Cyberhaven Hacked – Chrome Extension With 400,000 users Compromised

Cyberhaven, a prominent cybersecurity company, disclosed that its Chrome extension With 400,000+ users was...

AT&T and Verizon Hacked – Salt Typhoon Compromised The Network For High Profiles

AT&T and Verizon Communications, two of America's largest telecommunications providers, have confirmed they were...

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a...

New ‘OtterCookie’ Malware Attacking Software Developers Via Fake Job Offers

Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated...

API Security Webinar

72 Hours to Audit-Ready API Security

APIs present a unique challenge in this landscape, as risk assessment and mitigation are often hindered by incomplete API inventories and insufficient documentation.

Join Vivek Gopalan, VP of Products at Indusface, in this insightful webinar as he unveils a practical framework for discovering, assessing, and addressing open API vulnerabilities within just 72 hours.

Discussion points

API Discovery: Techniques to identify and map your public APIs comprehensively.
Vulnerability Scanning: Best practices for API vulnerability analysis and penetration testing.
Clean Reporting: Steps to generate a clean, audit-ready vulnerability report within 72 hours.

More like this

Lumma Stealer Attacking Users To Steal Login Credentials From Browsers

Researchers observed Lumma Stealer activity across multiple online samples, including PowerShell scripts and a...

New ‘OtterCookie’ Malware Attacking Software Developers Via Fake Job Offers

Palo Alto Networks reported the Contagious Interview campaign in November 2023, a financially motivated...

Skuld Malware Using Weaponized Windows Utilities Packages To Deliver Malware

Researchers discovered a malware campaign targeting the npm ecosystem, distributing the Skuld info stealer...