A New Type of Ransomware Targets Android Devices

Eset Cybersecurity Company discovered a new banking malware targeting Android devices. DoubleLocker, a Trojan that locks users out of their smart phones by altering PIN codes.

The ransomware is distributed through fake Adobe Flash Player downloads shared on compromised websites and it installs itself once given accessibility through the Google Play Service.

The malware installs itself as the default Android launcher, and creates an invisible shortcut that activates itself whenever the home button is pressed.

Double Locker also changes the user’s PIN code, and access to the device would only be possible after paying the ransom.

The only way to remove DoubleLocker is to perform a factory reset, which will erase all files.