Global  Video

“The world's speediest news portal”
One News Page
> >

More Than 1 Million Google Accounts Breached by Gooligan, New Android Malware Variant

PR Newswire Asia Thursday, 1 December 2016
Check Point reveals a major Google security breach, caused by a new Android malware variant that infects over 13,000 devices every day

SINGAPORE, Dec. 1, 2016 /PRNewswire/ -- Check Point® Software Technologies Ltd. (NASDAQ: CHKP) today announced its security researchers have revealed a new variant of Android malware, breaching the security of more than one million Google accounts. The new malware campaign, named Gooligan, roots Android devices and steals email addresses and authentication tokens stored on them. With this information, attackers can access users' sensitive data from Gmail, Google Photos, Google Docs, Google Play, Google Drive, and G Suite.

"This theft of over a million Google account details is very alarming and represents the next stage of cyber-attacks," said Michael Shaulov, Check Point's head of mobile products. "We are seeing a shift in the strategy of hackers, who are now targeting mobile devices in order to obtain the sensitive information that is stored on them."

*Key Findings:*
* Campaign infects 13,000 devices each day and is the first to root over a million devices.
* Hundreds of the email addresses are associated with enterprise accounts worldwide.
* Gooligan targets devices on Android 4 (Jelly Bean, KitKat) and 5 (Lollipop), which represent *nearly 74% of Android devices in use today. *
* After attackers gain control over the device, they generate revenue by fraudulently installing apps from Google Play and rating them on behalf of the victim.
* Every day Gooligan installs at least 30,000 apps on breached devices, or over 2 million apps since the campaign began.

Check Point reached out to the Google security team immediately with information on this campaign. "We appreciate Check Point's partnership as we've worked together to understand and take action on these issues. As part of our ongoing efforts to protect users from the Ghost Push family of malware, we've taken numerous steps to protect our users and improve the security of the Android ecosystem overall," stated Adrian Ludwig, director of Android security, Google.

Check Point's Mobile Research Team first encountered Gooligan's code in the malicious SnapPea app last year. In August 2016, the malware reappeared with a new variant and has since infected at least 13,000 devices per day. *About 40% of these devices are located in Asia and about 12% are in Europe.* Hundreds of the exposed email addresses are associated with enterprises around the world. The infection begins when a user downloads and installs a Gooligan-infected app on a vulnerable Android device, or by clicking on malicious links in phishing attack messages.

Check Point is offering a free online tool ( ) that allows users to check if their account has been breached. "If your account has been breached, a clean installation of an operating system on your mobile device is required. This complex process is called flashing, and we recommend powering off your device, and approaching a certified technician or your mobile service provider, to re-flash your device," added Shaulov.

*Follow Check Point via:*
Check Point Blog:  

*About Check Point Software Technologies Ltd.*
Check Point Software Technologies Ltd. ( is the largest network cyber security vendor globally, providing industry-leading solutions and protecting customers from cyberattacks with an unmatched catch rate of malware and other types of threats. Check Point offers a complete security architecture defending enterprises – from networks to mobile devices – in addition to the most comprehensive and intuitive security management. Check Point protects over 100,000 organizations of all sizes.

For more information, please call +65-6324-6588 or email
Share on
Share on
Post on 
Share by

You Might Like

Recent related news

Google makes 911 faster, more reliable in new Android update

Google makes 911 faster, more reliable in new Android update
Google recently tested new tech to help 911 dispatchers find callers more quickly and more accurately. 80 percent of the calls made with Google’s tech were...
The Next Web - InternetAlso reported by •BGR IndiaTUAWSifySoftpediaThe Verge

Google rebrands Android Pay to Google Pay in an attempt to unify all payment services

Google began bringing all of its different payment tools under the Google Pay brand last month. On Android, however, the company stuck with the older Android Pay...
BGR India - TechnologyAlso reported by •SoftpediaThe Verge

Android P will reportedly have a new look and embrace the notch

Android P will reportedly have a new look and embrace the notch
Google still has some serious work to do to get its most recent Android version to users — only 1.1 percent of Android users are using Oreo — but the company...
The Verge - TechnologyAlso reported by •The Next Web

How Google is betting big on iPhone X's most-talked about feature for Android P: Report

How Google is betting big on iPhone X's most-talked about feature for Android P: Report
NEW DELHI: Apple iPhone X, when launched, shot to fame not just because of its full screen design but also because of its famous 'notch'. Now, it looks like that...
WorldNews - Front PageAlso reported by •Softpedia

Growth in Android ransomware slows, but it's getting sneakier

While Android ransomware is still growing, it's doing so at a slower rate than at its peak in 2016. However, it is using sneaky new techniques to trick users....
betanews - TechnologyAlso reported by •The Verge

Android 9 Could Offer Security Feature to Prevent Camera Access from Idle Apps

Android 9 Could Offer Security Feature to Prevent Camera Access from Idle Apps
Google's upcoming Android 9 a.k.a. Android P mobile operating system is reportedly coming this spring with a bunch of new features and enhancements, including a...
Softpedia - Technology

Tweets about this

Other recent news in Press Releases

First Trust to Launch First Trust Nasdaq ARTIFICIAL INTELLIGENCE and Robotics ETFGenkyotex’s Lead PRODUCT Candidate, GKT831, Halts the Tumor Promoting Effect of Cancer Associated Fibroblasts in New Preclinical Study
MOBILE WORLD CONGRESS 2018: Comtech Showcasing Location Solutions for Mobile and IoT EcosystemsRagingWire Launches 100% Renewable / 100% Available Power Solution at Its Northern CALIFORNIA Data Centers
Broward Education Foundation Adds Support Opportunities for Victims and Families of Marjory Stoneman Douglas High SCHOOLGoodwin Bolsters FDA Practice with Partner Julie Tibbets in WASHINGTON, D.C.
Environmentally friendly: One News Page is hosted on servers powered solely by renewable energy
© 2018 One News Page Ltd. All Rights Reserved.  |  About us  |  Disclaimer  |  Press Room  |  Terms & Conditions  |  Privacy Policy  |  Content Accreditation
 RSS  |  News for my Website  |  Free news search widget  |  Help  |  Contact us  |  DMCA / Content Removal
How are we doing? Send us your feedback  |   LIKE us on Facebook   FOLLOW us on Twitter   FIND us on Google+