Connect with us

InfoTech

 ‘Fast Cleaner app,’ Malicious, Steals Users’ Bank Details on  Devices-NCC

Published

on

Share

The Nigerian Communications Commission (NCC) has warned the public of a malicious app called ”Fast Cleaner” — which steals users’ banking app login credentials on Android devices.NCC Director of Public Affairs, Ikechukwu Adinde, issued the warning in a statement posted on the commission’s website on Saturday.

However, hecks showed that there are numerous apps named “Fast Cleaner” on Google Playstore.

Adinde said the NCC Computer Security Incident Response Team (CSIRT) discovered the Fast Cleaner app which claims to be a phone booster and battery saver tool but actually contains a malware named ‘Xenomorph’.
He said the application’s main operation is to steal credentials, combined with the use of SMS and notification interception to log-in and use potential two-factor authentication tokens.
“Xenomorph is propagated by an application that was slipped into Google Play store and masquerading as a legitimate application called “Fast Cleaner” ostensibly meant to clear junk, increase device speed and optimize battery. In reality, this app is only a means by which the Xenomorph Trojan could be propagated easily and efficiently,” the statement reads.“To avoid early detection or being denied access to the PlayStore, “Fast Cleaner” was disseminated before the malware was placed on the remote server, making it hard for Google to determine that such an app is being used for malicious actions.“Once up and running on a victim’s device, Xenomorph can harvest device information and Short Messaging Service (SMS), intercept notifications and new SMS messages, perform overlay attacks, and prevent users from uninstalling it. The threat also asks for Accessibility Services privileges, which allow it to grant itself further permissions.“The CSIRT said the malware also steals victims’ banking credentials by overlaying fake login pages on top of legitimate ones.“Considering that it can also intercept messages and notifications, it allows its operators to bypass SMS-based two-factor authentication and log into the victims’ accounts without alerting them.”Adinde said according to a security advisory from the NCC CSIRT, the malware has high impact and high vulnerability rate.“Xenomorph has been found to target 56 internet banking apps, 28 from Spain, 12 from Italy, 9 from Belgium, and 7 from Portugal, as well as Cryptocurrency wallets and general-purpose applications like emailing services,” the statement adds.“The Fast Cleaner app has now been removed from the Play Store but not before it garnered 50,000+ downloads.”The NCC advised telecom consumers to use trusted antivirus solutions and update them regularly to their latest definitions.

The commission also asked consumers and other stakeholders to always update banking applications to their most recent versions.

Continue Reading
Click to comment

Leave a Reply

Your email address will not be published. Required fields are marked *

InfoTech

FIFA Hides More than 10 million Hate Posts, Comments

Published

on

International Federation of Association Football (Fédération Internationale de Football Association)
Share

 Football’s ruling body FIFA on Thursday said that it has hidden more than 10 million abusive comments in its fight against hate speech.

FIFA said it has analysed some 33 million posts and comments on 15,302 accounts since it launched its Social Media Protection Service (SMPS) at the 2022 World Cup, and made it available to all its members and players in 2024.

It said that SMPS has been used at 23 tournaments as well as in qualifying and friendly matches.

It is also available at the current Club World Cup for the 32 teams and 2,019 accounts of players, coaches and officials.

FIFA said it is using Artificial Intelligence (AI) to filter abusive posts and hide them from the account owners.

A FIFA survey has revealed that women’s players are more subjected to abuse than the men. (dpa/NAN)

Continue Reading

InfoTech

Cloud Security and its Role in Healthcare Cybersecurity

Published

on

Share

By Engineer Olusola Omotunde

The advent of cloud technology can be traced back to the 1960s according to https://www.cloudzero.com/blog/history-of-the-cloud/.

Cloud technology has evolved from a myth to a revolution in the global space.

In fact, it forms one of the best ways to secure data and save organizational funds.

A drift from the era of physical data centers has become the norm.

Cloud platforms like Amazon and Azure have taken over the scene even in developing climes. How much space does an organization need for its operations and what is the cost effect?

Another pertinent point would be, the security of organizational data.

In this paper, we will provide a synopsis of cloud security and its role in healthcare cybersecurity.

The healthcare industry is one of the most critical aspects of any nation. How safe are patient’s data? What are the mitigating factors? How regularly does the IT team carry out an assessment of the security in place? In all of these, cloud security comes into play.

Cloud security is critical in healthcare cybersecurity because it provides the tools, processes, and policies required to protect sensitive patient data and assure regulatory compliance in an increasingly digital environment. Healthcare organizations that use cloud services for electronic health records (EHRs), telemedicine, patient portals, and other services face specific cybersecurity challenges, such as protecting huge amounts of personally identifiable information (PII) and protected health information (PHI).

Below are some aspects where cloud security contributes or plays pivotal roles in healthcare cybersecurity:

1. Data Protection

• Data Backup and Recovery: Cloud solutions provide backup and disaster recovery capabilities, which assist healthcare organizations in protecting data from loss due to cyberattacks or system failures.

• Encryption: Cloud providers provide sophisticated encryption options for data at rest and in transit. This is critical for healthcare providers to safeguard sensitive patient information from unauthorized access.

2. Prevention and Detection of Threat

• Real-time Monitoring and Alerts: Cloud security solutions can provide 24-hour monitoring and notifications if suspicious behaviour is discovered. This quick response capability is crucial for healthcare organizations to avoid or mitigate the effects of cyber events.

• Advanced Threat Protection: Cloud providers provide services that include threat detection features like intrusion detection, malware scanning, and vulnerability assessments. These services assist healthcare organizations in identifying and addressing hazards before they cause harm.

• Automated Patch Management: Cloud providers frequently handle patch management for their infrastructure, ensuring that systems are up to date against the most recent vulnerabilities, which can dramatically minimize the risk of attack.

  3.  Flexibility and Scalability

• Scalable Security: As healthcare organizations expand, cloud security can scale with them, allowing for the installation of additional security measures without requiring major infrastructure upgrades.

• Adaptable Infrastructure: Healthcare organizations can quickly respond to emerging threats with cloud-based solutions that include updated security tools and services. This adaptability is critical in a dynamic threat context.

4. Cost Efficiency

• Pay-as-you-go Model: Many cloud services use a pay-as-you-go model, which allows healthcare providers to only pay for the security services they use. This can help organizations manage costs while still providing high-quality security tools.

• Reduced IT Costs: Cloud providers manage and maintain the infrastructure, eliminating the need for healthcare companies to invest heavily in on-premises security hardware and personnel.

5. Regulatory Compliance

• HIPAA and GDPR Compliance: Cloud providers that service healthcare organizations frequently offer solutions designed to comply with industry-specific standards such as the Health Insurance Portability and Accountability Act (HIPAA) in the United States and the General Data Protection Regulation (GDPR) in Europe.

• Audit Support: Many cloud services provide logging and monitoring capabilities to assist healthcare organizations in tracking and auditing data access and usage, which is critical for regulatory compliance.

Key Considerations for Healthcare Providers across the globe

When healthcare providers deploy cloud solutions, they must address a number of security concerns to safeguard sensitive patient data, ensure regulatory compliance, and manage possible risks. It is also important that they scrutinize the security certificates held by cloud providers, ensure that they clarify ownership rights to their data with their cloud providers, training staff on the security best practices which include training on data handling, phishing awareness and secure access protocol.

There is no one-size fits all rule other than being careful!

Engineer Olusola Omotunde is an IT expert and writes from Lagos, Nigeria


Continue Reading

InfoTech

The World Today, Data Ethics and Privacy

Published

on

Share

By Emmanuel Oye-Adeniran

Data is becoming a vital resource in the digital age, propelling innovation and decision-making in many sectors of the economy such as Construction, Healthcare, Agriculture and Finance. However, data ethics and privacy worries have increased along with data gathering, storage, and analysis growth.

Discussions concerning the ethical use of data and the defence of individual rights in a society that is becoming more interconnected revolve around these issues.
This article looks at the importance of data privacy and ethics as it affects today’s world.

Many years ago, before the advent of digitalization, it was of no consequence to share an individual’s information with or without consent which made it quite interesting as there were no laws safeguarding individual’s data, in fact, people did not bother much.

However, in the new era of digitalization, a person’s data must be treated as private.

They have entrusted you with their bank details, contact addresses, etc and they must be kept private.

Cybercrime has become so prevalent globally that many have argued it has come to stay. Well, this might not be untrue considering how long it has become an issue on the front burner.

A synopsis of data privacy between the 16 and 19th centuries reveals that privacy was mostly a problem with physical areas and communications. The necessity of maintaining communication secrecy was brought to light by the development of the postal system in the seventeenth century (Ref: Mark ElliotAnna M. MandalariMiranda MourbyKieron O’Hara).

In today’s age of online shopping, social media interactions and AI technology, it has become evident that various platforms usually collect people’s data for various purposes, ranging from marketing intelligence to improved user experience.

A look at some of the elements which are related to Data privacy and ethics in today’s world:

(i)Transparency and Accountability:

Stakeholders are holding digital businesses more and more responsible for their ethical behaviour and data policies. Gaining the trust of users requires being open and honest about the goals, techniques, and possible risks associated with data collecting. Businesses should make their policies on the gathering, handling, and distribution of personal data easily understandable.

User permission and data control procedures should also be simple to understand and intuitive. Accountability techniques, such recurring audits and impartial supervision, can guarantee that businesses follow legal and ethical criteria.

(ii) Bias and Fairness:

The computer is obviously not intelligent without human input, and so it must be fed with the right unbiased information. If the Algorithm is discriminatory towards a social class for instance, then this nullifies the essence of Data ethics.

Algorithmic bias poses a significant ethical challenge in technology use. Machine learning algorithms, while powerful, can perpetuate and amplify biases present in training data. This can result in discriminatory outcomes, reinforcing existing social inequalities.

Ethical technology use requires ongoing efforts to identify and mitigate bias in algorithms. Companies must prioritize fairness and equity in designing and implementing AI systems, ensuring that technology serves diverse populations without perpetuating discrimination. 

(iii)Consent and its role:

The use of ambiguous policies often makes it almost impossible for users to make very safe and informed choices about the implications of sharing their data and so it is imperative that policies be made simpler for users to understand. This would by a long shot, provide a proper decision-making process.

(iv)Empowering users:

Enabling consumers to take control of their data is essential to using technology ethically. It is critical to give people easily available tools for controlling privacy settings, comprehending data usage, and making defensible judgments about disclosing personal information. Initiatives aimed at raising user knowledge and education can support people in advocating for their right to privacy and navigating the digital world. By enabling people to take charge of their digital identities, businesses can cultivate a climate that values data security and online privacy. People must be given more rights to their data.

Conclusion

In today’s ever-evolving world of digitalization, it is imperative that stakeholders especially corporations adhere to the rules of data ethics and privacy.

Every clime must ensure that their users are protected by establishing laws and reviewing such existing laws to protect their users. Some of the data protection and ethics laws like the Pan-African initiatives of 2014, the Nigeria Data Protection Regulation (NDPR) issued in 2019 and the European GDPR which came into effect on the 25th of May, 2018 are some of the efforts by various governments across the globe to stem the abuse of peoples’ rights to their Data. The laws are quite clear and focus on some salient points such as, Increased accountability & transparency, Empowerment of individuals, Standardization across the EU and Encouragement of best practices. These laws must be adhered to.

Big world corporations must put the customer’s rights at the front burner.

Continue Reading

Advertisement

Read Our ePaper

Top Stories

NEWS16 hours ago

UCare, ECOWAS Extend Lifeline to Displaced Families in Abagana Camp

ShareBy David Torough, Abuja UCare Nigeria, with support from the ECOWAS Peace Fund, on Friday expanded its humanitarian pilot programme...

NEWS1 day ago

Julius Berger Joins Forces With FRIN, NCF to Plant 20,000 Trees at FCT Army Cantonment

ShareBy Mike Odiakose, Abuja In a landmark move towards environmental sustainability, engineering construction company, Julius Berger Nigeria Plc, in partnership...

NEWS1 day ago

FG, States, LGCs Share N2.001trn July, 2025 Revenue

ShareBy Tony Obiechina Abuja A total sum of N2.001 trillion, being July 2025 Federation Account Revenue, has been shared to...

BUSINESS1 day ago

Moniepoint, NBCC Push for Transparent Financing to Unlock SME Growth

ShareMoniepoint Inc. and the Nigerian-British Chamber of Commerce (NBCC) have urged faster, transparent and human-centered financing models to unlock growth...

BUSINESS1 day ago

FG’s Loan Facilities Viable to Boost Export Trade – NEPC

Share The Nigerian Export Promotion Council (NEPC) has described loan and grant facilities provided by the Federal Government as viable...

POLITICS1 day ago

INEC Presents Certificates of Return to By-elections Winners

ShareThe Independent National Electoral Commission (INEC) has presented Certificates of Return to senators-elect and members-elect of the House of Representatives...

POLITICS1 day ago

Activist joins ADC, Urges Nigerians to Unite Against APC

ShareA popular human rights and anti-corruption activist, Comrade Ibrahim Garba Wala, popularly known as IG Wala, has snubbed the ruling...

POLITICS1 day ago

Obi Mocks Critics as Homosexuality Allegation Trends

ShareThe 2023 presidential candidate of the Labour Party (LP), Peter Obi, has dismissed a viral photo trending online which some...

NEWS1 day ago

Wike Reaffirms Support for Tinubu 2027 Re-election

ShareBy Laide Akinboade, Abuja The Minister of Federal Capital Territory (FCT), Nyesom Wike yesterday said he will support any politician...

NEWS1 day ago

Over 1,016 NYSC Members Complete Orientation Course in Abia

ShareNo fewer than 1,016 Batch ‘B’ Stream I National Youth Service Corps (NYSC) members deployed in Abia for 2025 have...

Copyright © 2021 Daily Asset Limited | Powered by ObajeSoft Inc