Categories: News

1 Million Google accounts hacked by Gooligan Malware, check if yours is hacked too

Recent research by Checkpoint has revealed a new malicious malware named Gooligan which has breached the security of a million Google accounts.

The malware infects the devices and steals the tokens which are used to access Gmail, Google Play, Google Photos and Documents, Google Drive and more. Gooligan has infected many Android devices mainly Android 4 and 5. Large number of victims are from Asia where it has affected about 57% of the devices and the number is increasing everyday. In addition to Google accounts, it also infects a number of fake applications like Perfect Cleaner, Wi-Fi Enhancer, UC Mini, memory Booster etc. (Check the list of fake apps in Appendix A, here)

Gooligan may attack through a fake 3rd party application, a spam email or SMS. When a user installs any unverified Gooligan-infected app on the Android Device, the malware accesses the root data of the device and sends it to the attacker. As a result, attacker gets remote control of the device. The malware not only steals the account information but also install apps from Google Play itself and then rate them to get paid by other parties.

Image: CheckPoint

Checkpoint informed Google management about the alarming situation. Google appreciated the concern and they are now investigating the issue further together. Adrian Ludwig, Director of Android Security at Google, said,

“We’re appreciative of both Check Point’s research and their partnership as we’ve worked together to understand these issues. As part of our ongoing efforts to protect users from the Ghost Push family of malware, we’ve taken numerous steps to protect our users and improve the security of the Android ecosystem overall.”

Google has already taken some steps to ensure the security of users and they’ll continue to do so in future. Google is removing the unverified apps from Google Play, revoking affected tokens and also enhancing accounts’ security.

Image: Fake Reviews

How to know if your account is safe or not?

You can check if your account is breached through web site https://gooligan.checkpoint.com/.

If your account has been compromised then,

  • Take your phone to a certified technician to request a clean installation of operating system, a process which is called “Flashing”.
  • Change your password of Google account after this process.
  • Install antivirus e.g, Check Point ZoneAlarm to check infected apps.
Sponsored
Maheen Kanwal

Maheen Kanwal is a Tech Journalist at TechJuice. She covers the latest technological, telecom and business related, local & global news. (Reach at maheen@techjuice.pk)

Leave a Comment
Share
Published by
Maheen Kanwal

Recent Posts

China’s Tencent Releases Large Language Model, Opens it For Enterprise Use

Capable of conversing in both Chinese and English, Tencent’s large language model ‘Hunyuan’ is claimed…

8 months ago

Apple Reportedly Spending ‘Million of Dollars Each Day’ for AI Training

Working on multiple AI models, Apple has allocated several teams who are working on artificial…

8 months ago

World’s Largest Wind Turbine Breaks Record For Power Generated In A Single Day-During A Typhoon

The world's largest offshore wind turbine has achieved a milestone by setting a new record…

8 months ago

YouTube Will Let You Play Mini Games Soon

YouTube is stepping into the world of gaming. YouTube has started testing out its gaming…

8 months ago

Pakistani Student Won First Position In Matric Exams of UAE

In a remarkable academic achievement, Abdullah Zaman, a Pakistani student hailing from Attock, has clinched…

8 months ago

‘Flying Bum’ World’s largest Aircraft Is Ready To Launch In 2026 With Hybrid Technology

Flying Bum, the world's largest aircraft is ready to launch in 2026. The Airlander 10…

8 months ago