Contact us today!
(518) 203-2110

Evolve IT

Evolve IT has been serving the Saratoga Springs area since 1995, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

Alert: Largest Recorded Breach of Android Nets Hackers a Big Pay Day

Alert: Largest Recorded Breach of Android Nets Hackers a Big Pay Day

A previously known malware called Ghost Push now has a component that has caused countless problems for over a million Android users. This component, called Gooligan, is the source of the trouble, and it adds to this chaos by infecting over 13,000 new devices every day.

Gooligan can steal the authentication tokens that are used to access information stored by Google’s most common offerings. Among these are Google Drive, Google Docs, Gmail, and the G-Suite.

Rather than using the vulnerability to steal data, the criminals seem content with just using the devices to install malicious apps from the Google Play store to generate ad revenue. In fact, according to reports, this primary reason to use Gooligan brings in about $320,000 every month for the fraudsters, which makes Gooligan perhaps the largest Android breach in its history.

Of course, we bet that you’re breathing in a sigh of relief, thanking your lucky stars that Gooligan hasn’t shown any signs of stealing data. When you think about it, this is pretty incredible, as Gooligan could potentially be accessing sensitive information that is stored anywhere on your Android device. Even Google believes that Gooligan is focused more on accruing revenue rather than stealing data, claiming “The motivation… is to promote apps, not steal information.”

Google has taken the initiative and removed apps that include Gooligan from the Play Store, but who knows what other threats are out there, just waiting to be installed on a device? Keeping these threats in mind is key, especially when you have employees using their own mobile devices to access company data. If your employees access the Play Store on their devices, you need to educate them on the effects of Gooligan and how to avoid becoming a victim.

This is why it’s so important that your organization is ready to handle employee devices by following a strong Bring Your Own Device policy. If you don’t already have a BYOD policy in place, be sure to implement one as soon as possible--one that requires any employees using their own devices for work purposes to go through IT and ensure that security protocol is followed closely.

If you don’t already have a plan to deal with unauthorized devices on your network, or unauthorized apps appearing on your devices, be sure to reach out to us at (518) 203-2110.

Comments

 
No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Monday, 03 November 2025
If you'd like to register, please fill in the username, password and name fields.

Captcha Image

Blog Archive

Free Consultation

Sign up today for a
FREE Network Consultation

How secure is your IT infrastructure?
Let us evaluate it for free!

Sign up!

Free Consultation
 

Tag Cloud

Tip of the Week Security Technology Internet Best Practices Cloud Hackers Privacy Email Productivity Business Malware Business Computing Software User Tips Workplace Tips Google Hosted Solutions Microsoft Computer Upgrade Efficiency IT Support Mobile Devices Innovation Smartphone Windows 10 Gmail Network Security Ransomware Hardware Microsoft Office Office Backup Apps Business Continuity Disaster Recovery Communication Operating System Hacking WiFi Facebook The Internet of Things Social Media Bandwidth Firewall Mobile Device Management Money Network Content Filtering Cybercrime Managed Service Provider Outlook Website Wireless Technology Android Employer-Employee Relationship Apple History Two-factor Authentication Small Business Smartphones Phishing Best Practice App Alert Mobile Computing Networking communications Big Data Data storage Safety Data Unified Threat Management Windows Experience Quick Tips Search Memory User BYOD Downtime Help Desk Hard Drives Passwords Streaming Media Micrsooft Shortcut Visible Light Communication Disaster Remote Computing Deep Learning DDoS BDR Data Management Heating/Cooling Business Growth Word Robot Advertising Recovery Vendor Management Society Sports Spam Google Wallet Business Management Information Technology Running Cable Monitors Competition Windows 8 Internet of Things Windows XP IT Services Presentation Hosted Solution Entrepreneur Artificial Intelligence Documents Domains Displays Tech Support Compliance Hacker Drones End of Support Social Application Printer Browser Virtual Desktop Wireless Customer Service Writing Unified Communications Securty Document Management Encryption SaaS VoIP Law Enforcement Router Office 365 Cortana Proactive IT Saving Money Analytics Network Congestion Lithium-ion battery Retail Save Money intranet Music Managed IT services Cryptocurrency Social Networking Laptop IBM Public Speaking Virtualization Education IP Address Google Docs Bluetooth Cleaning Holiday Processors Black Market Government YouTube Keyboard LiFi Staffing Augmented Reality Automation Office Tips
QR-Code