Android Manifest Case

 

A new malware as been detected in the Syrian e-government web portal codename Promethium by Microsoft has been around since 2012. In June 2020, Promethium was connected to tampered installers and watering holes. The malware will request permission to read contacts, write on external storage, keep the device awake, access information about cellular and wifi networks and even allow the app to have itself started as soon as the system has finished booting.

 

 

References:

 

https://thehackernews.com/2021/07/apt-hackers-distributed-android-trojan.html

 

https://thecybersecurity.news/general-cyber-security-news/apt-hackers-distributed-android-trojan-via-syrian-e-government-portal-11416/