본문 바로가기

Security_News/국내보안소식

모바일 청첩장 스미싱 분석

728x90

결혼 시즌이 돌아오니 이제 스미싱도 청첩장 사칭하는 스미싱 문자가 출현하기 시작되었네요 


분석을 해보니  엄청나게 탈취를 하고 있습니다.

주요탈취정보
android.permission.CHANGE_NETWORK_STATE (change network connectivity)
android.permission.SEND_SMS (send SMS messages)
android.permission.READ_EXTERNAL_STORAGE (read from external storage)
android.permission.RECEIVE_BOOT_COMPLETED (automatically start at boot)
android.permission.READ_PHONE_STATE (read phone state and identity)
android.permission.READ_SMS (read SMS or MMS)
android.permission.SYSTEM_ALERT_WINDOW (display system-level alerts)
android.permission.WRITE_SMS (edit SMS or MMS)
android.permission.ACCESS_WIFI_STATE (view Wi-Fi status)
android.permission.WAKE_LOCK (prevent phone from sleeping)
android.permission.GET_TASKS (retrieve running applications)
android.permission.WRITE_SETTINGS (modify global system settings)
android.permission.ACCESS_NETWORK_STATE (view network status)
android.permission.INTERNET (full Internet access)
android.permission.CHANGE_WIFI_STATE (change Wi-Fi status)
android.permission.RESTART_PACKAGES (kill background processes)
android.permission.DISABLE_KEYGUARD (disable key lock)
android.permission.WRITE_EXTERNAL_STORAGE (modify/delete SD card contents)
android.permission.READ_CONTACTS (read contact data)
android.permission.RECEIVE_SMS (receive SMS)

뱅킹 탈취 목적이 강하니 절대로  링크를 눌러서 설치하는 일이 없도록 하셔야합니다.



728x90