We don't have a preso but Android Security made a bunch of changes to AOSP in response to ransomware (nerfed device admin API to remove common persistence vector, changed overlay/UI behavior that was used to make device unusable, file system changes to prevent encryption, ...).
-
-
-
I like to believe this all contributed to driving ransomware on Android from something that happened occasionally to pretty much non-existent.
End of conversation
New conversation -
-
-
How about Lazarus and APT28? ;) Pretty big coverage.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
Man I’ll have to dig deep but there was a project I saw that was hooking WIN_API crypto calls for detection but not necessarily a presentation.
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.