Hacker News new | ask | show | jobs
by est 3942 days ago
Keyword:

com.facebook.katama

Android.Monitor.Gsyn.B

Android.Trojan.Andup.D 1-AP6YWG

This is mostly false report because at least Xiaomi don't have any Facebook app pre-installed. Just bunch of MIUI crapware.

Affected models are Huawei G510, Lenovo S860, Xiaomi MI3 (and 18 other ignored models not mentioned in title) which dates back to as early as 2012, in Android 4.0 age I assume. Pretty good craigslist deal to get there second hand phones tested for a 2015 security report. Hey their "security expert" might even did a double wipe and factory reset in recovery!

1 comments

Different phones, different regions, different vendors.

Could just as easily be a supply chain issue where a reseller decided to make some money on the side, could censorship relted crap mandated by the Chinese government for local usage leaking into exports phones, could be some one on craigs list, could be completely fabricated.

However the fact that some phones didn't come with it doesn't mean much either.

As far as the facebook App goes

AVG has some reports on it http://www.avgthreatlabs.com/ww-en/android-app-reports/app/c...

Mentioned in Google Groups https://groups.google.com/forum/#!searchin/ugs-support/katam...

Was removed from Google Play http://www.bestappsmarket.com/p/app?appId=1588222&title=com-...

Someone with a Xiaomi MI3 phone complaining that that app takes up 22% of his battery http://www.htcmania.com/showthread.php?t=872251

Questions about it dating to 2014 http://www.quora.com/Why-is-the-Facebook-app-package-name-in...

Seems that the original code name for the facebook app was Katana so using katama instead is akin to registering www.worldofworcraft.com for you phishing domain.

So while this whitepaper might be overblown and pure marketing it seems that there's some truth behind this.