{"id":3816,"date":"2021-09-27T23:10:13","date_gmt":"2021-09-28T04:10:13","guid":{"rendered":"https:\/\/truxgoservers.com\/blog\/?p=3816"},"modified":"2021-09-27T23:10:14","modified_gmt":"2021-09-28T04:10:14","slug":"blackrock-malware-that-steals-passwords-and-data","status":"publish","type":"post","link":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/","title":{"rendered":"BlackRock malware that steals passwords and data"},"content":{"rendered":"\n<p>This malware emerged in May 2020 and was detected thanks to the good work done by the mobile security company ThreatFabric. These researchers, after hard work, discovered that the source code of the BlackRock malware is based on another malware strain also known as Xerses. What its developers did is improve it with additional features. In this sense, they focused on promoting the theft of the passwords of the apps they used, and also on obtaining the credit card information of those users.<\/p>\n\n\n\n<p>BlackRock works like most Android banking Trojans, except that it targets more apps than most of its predecessors. The Trojan will steal both login credentials (username and passwords), when available, but will also prompt the victim to enter payment card details if the applications support financial transactions so don&#8217;t be fooled.<\/p>\n\n\n\n<p>Keep in mind that once the malware is installed on the device by a malicious application contaminated with the BlackRock Trojan, it will ask the user to grant the Accessibility permission of the phone. Thanks to the use of this permission that the victim has granted, he will use it to automate tasks and even perform taps on behalf of the user, so you always have to be careful when giving permissions to an unknown application. The BlackRock malware also uses the accessibility feature to grant itself access to other Android permissions. Then additionally it uses an Android Device Policy Controller to grant itself administrator access to the device or also known as root. However, this threat can:<\/p>\n\n\n\n<p><strong><em>\u25b8Intercept SMS messages<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Spam contacts with predefined SMS<\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Launch specific applications <\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Show custom push notifications <\/em><\/strong><\/p>\n\n\n\n<p><strong><em>\u25b8Sabotage mobile antivirus apps and more<\/em><\/strong><\/p>\n\n\n\n<p>Also check:<br><a href=\"https:\/\/truxgoservers.com\/blog\/elon-musk-do-not-fall-for-this-scam\/\">Elon Musk \u2013 Do not fall for this Scam<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/saint-bot-a-new-password-stealing-threat\/\">Saint bot \u2013 A new password stealing threat<\/a><br><a href=\"https:\/\/truxgoservers.com\/blog\/iiserpent-malware-that-performs-seo-fraud\/\"><a href=\"https:\/\/truxgoservers.com\/blog\/oscorp-malware-that-attacks-android\/\">Oscorp Malware that attacks Android<\/a><\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>This malware emerged in May 2020 and was detected thanks to the good work done by the mobile security company ThreatFabric. These researchers, after hard work, discovered that the source code of the BlackRock malware is based on another malware strain also known as Xerses. What its developers did is improve it with additional features. [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":3817,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[10],"tags":[36],"class_list":["post-3816","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-cybersecurity","tag-cybersecurity"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.4 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>BlackRock malware that steals passwords and data - Truxgo Server Blog<\/title>\n<meta name=\"description\" content=\"Android has been in the sights of cybercriminals for a long time and today we will see a threat called BlackRock that targets Android.....\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/\" \/>\n<meta property=\"og:locale\" content=\"es_MX\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"BlackRock malware that steals passwords and data - Truxgo Server Blog\" \/>\n<meta property=\"og:description\" content=\"Android has been in the sights of cybercriminals for a long time and today we will see a threat called BlackRock that targets Android.....\" \/>\n<meta property=\"og:url\" content=\"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/\" \/>\n<meta property=\"og:site_name\" content=\"Truxgo Server Blog\" \/>\n<meta property=\"article:published_time\" content=\"2021-09-28T04:10:13+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2021-09-28T04:10:14+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/09\/BlackRock.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"900\" \/>\n\t<meta property=\"og:image:height\" content=\"506\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Truxgo\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Escrito por\" \/>\n\t<meta name=\"twitter:data1\" content=\"Truxgo\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tiempo de lectura\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutos\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/\"},\"author\":{\"name\":\"Truxgo\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\"},\"headline\":\"BlackRock malware that steals passwords and data\",\"datePublished\":\"2021-09-28T04:10:13+00:00\",\"dateModified\":\"2021-09-28T04:10:14+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/\"},\"wordCount\":302,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/09\\\/BlackRock.jpg\",\"keywords\":[\"Cybersecurity\"],\"articleSection\":[\"Cybersecurity\"],\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/\",\"name\":\"BlackRock malware that steals passwords and data - Truxgo Server Blog\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/09\\\/BlackRock.jpg\",\"datePublished\":\"2021-09-28T04:10:13+00:00\",\"dateModified\":\"2021-09-28T04:10:14+00:00\",\"description\":\"Android has been in the sights of cybercriminals for a long time and today we will see a threat called BlackRock that targets Android.....\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#breadcrumb\"},\"inLanguage\":\"es\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#primaryimage\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/09\\\/BlackRock.jpg\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2021\\\/09\\\/BlackRock.jpg\",\"width\":900,\"height\":506},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/blackrock-malware-that-steals-passwords-and-data\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"BlackRock malware that steals passwords and data\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"name\":\"Truxgo Server Blog\",\"description\":\"Cloud Server and Hosting Tutorials.\",\"publisher\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"es\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#organization\",\"name\":\"Truxgo Server Blog\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"contentUrl\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/wp-content\\\/uploads\\\/2020\\\/08\\\/cropped-truxgo-logo-blanco.png\",\"width\":1250,\"height\":278,\"caption\":\"Truxgo Server Blog\"},\"image\":{\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/#\\\/schema\\\/person\\\/8b409c26449db6aa09724b45331e333e\",\"name\":\"Truxgo\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"es\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g\",\"caption\":\"Truxgo\"},\"sameAs\":[\"https:\\\/\\\/truxgoservers.com\\\/blog\"],\"url\":\"https:\\\/\\\/truxgoservers.com\\\/blog\\\/author\\\/truxgo\\\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"BlackRock malware that steals passwords and data - Truxgo Server Blog","description":"Android has been in the sights of cybercriminals for a long time and today we will see a threat called BlackRock that targets Android.....","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/","og_locale":"es_MX","og_type":"article","og_title":"BlackRock malware that steals passwords and data - Truxgo Server Blog","og_description":"Android has been in the sights of cybercriminals for a long time and today we will see a threat called BlackRock that targets Android.....","og_url":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/","og_site_name":"Truxgo Server Blog","article_published_time":"2021-09-28T04:10:13+00:00","article_modified_time":"2021-09-28T04:10:14+00:00","og_image":[{"width":900,"height":506,"url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/09\/BlackRock.jpg","type":"image\/jpeg"}],"author":"Truxgo","twitter_card":"summary_large_image","twitter_misc":{"Escrito por":"Truxgo","Tiempo de lectura":"2 minutos"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#article","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/"},"author":{"name":"Truxgo","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e"},"headline":"BlackRock malware that steals passwords and data","datePublished":"2021-09-28T04:10:13+00:00","dateModified":"2021-09-28T04:10:14+00:00","mainEntityOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/"},"wordCount":302,"commentCount":0,"publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/09\/BlackRock.jpg","keywords":["Cybersecurity"],"articleSection":["Cybersecurity"],"inLanguage":"es","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#respond"]}]},{"@type":"WebPage","@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/","url":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/","name":"BlackRock malware that steals passwords and data - Truxgo Server Blog","isPartOf":{"@id":"https:\/\/truxgoservers.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#primaryimage"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#primaryimage"},"thumbnailUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/09\/BlackRock.jpg","datePublished":"2021-09-28T04:10:13+00:00","dateModified":"2021-09-28T04:10:14+00:00","description":"Android has been in the sights of cybercriminals for a long time and today we will see a threat called BlackRock that targets Android.....","breadcrumb":{"@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#breadcrumb"},"inLanguage":"es","potentialAction":[{"@type":"ReadAction","target":["https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/"]}]},{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#primaryimage","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/09\/BlackRock.jpg","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2021\/09\/BlackRock.jpg","width":900,"height":506},{"@type":"BreadcrumbList","@id":"https:\/\/truxgoservers.com\/blog\/blackrock-malware-that-steals-passwords-and-data\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/truxgoservers.com\/blog\/"},{"@type":"ListItem","position":2,"name":"BlackRock malware that steals passwords and data"}]},{"@type":"WebSite","@id":"https:\/\/truxgoservers.com\/blog\/#website","url":"https:\/\/truxgoservers.com\/blog\/","name":"Truxgo Server Blog","description":"Cloud Server and Hosting Tutorials.","publisher":{"@id":"https:\/\/truxgoservers.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/truxgoservers.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"es"},{"@type":"Organization","@id":"https:\/\/truxgoservers.com\/blog\/#organization","name":"Truxgo Server Blog","url":"https:\/\/truxgoservers.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","contentUrl":"https:\/\/truxgoservers.com\/blog\/wp-content\/uploads\/2020\/08\/cropped-truxgo-logo-blanco.png","width":1250,"height":278,"caption":"Truxgo Server Blog"},"image":{"@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/truxgoservers.com\/blog\/#\/schema\/person\/8b409c26449db6aa09724b45331e333e","name":"Truxgo","image":{"@type":"ImageObject","inLanguage":"es","@id":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/52691a61c58e68677ed4860007c1bb03b14eabe7350747ab3fad3e17825b4b96?s=96&d=mm&r=g","caption":"Truxgo"},"sameAs":["https:\/\/truxgoservers.com\/blog"],"url":"https:\/\/truxgoservers.com\/blog\/author\/truxgo\/"}]}},"_links":{"self":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3816","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/comments?post=3816"}],"version-history":[{"count":2,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3816\/revisions"}],"predecessor-version":[{"id":3828,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/posts\/3816\/revisions\/3828"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media\/3817"}],"wp:attachment":[{"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/media?parent=3816"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/categories?post=3816"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/truxgoservers.com\/blog\/wp-json\/wp\/v2\/tags?post=3816"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}