Threat of the month: The Geinimi Android trojan

Randy Abrams
Randy Abrams
What is it?
Geinimi is a trojan that runs on Android-based phones. The trojan comes delivered as a component of other software and has been found in pirated versions of legitimate applications. Once installed the trojan steals personal information and uploads it to remote servers.

How does it work?
Anyone who installs applications from the Android marketplace do not get the compromised version, and Geinimi is not widespread. However, this is a harbinger of things to come. If you don't have an Android-based phone, your only risk is a friend's infected phone coughing up information about you that your friend has. The real message is that smartphones and tablets are being used for commerce now, and this is attracting criminals.

How can I prevent it?

Your first line of defense is to use legal apps and be selective about what you install. There is considerable wisdom in not being one of the first to install a new app.

More in Features

Behind the scenes: Privacy and data-mining

Behind the scenes: Privacy and data-mining

With data-mining firms harvesting personal information from online activity, privacy advocates, if not yet consumers, are alarmed, reports James Hale.

The great divide: Reforming the CFAA

The great divide: Reforming the CFAA

Aaron Swartz's death inspired Rep. Zoe Lofgren to want to reform the federal anti-hacking law, but some security pros worry this would sterilize a potent enforcement weapon, reports Dan Kaplan.

Suspect everything: Advanced threats in the network

Suspect everything: Advanced threats in the network

Are there ways to catch sophisticated malware that hides in trusted processes and services? Deb Radcliff finds out.