Skip to main content

Millions of Android users are at risk from ‘drive-by’ cryptomining

virus phone
Image used with permission by copyright holder

Millions of Android users could be at risk of having their mobile devices hijacked by “drive-by” cryptominers, according to research by MalwareBytes Lead Malware Intelligence Analyst Jerome Segura.

“Drive-by” cryptomining on a mobile device is functionally identical to that received previous warnings from Malwarebytes involving desktop PCs. By redirecting web traffic to a specific address, a device’s capabilities are hijacked by a bit of JavaScript code and harnessed to mine the cryptocurrency Monero. While this may seem like a relatively harmless — if ethically questionable — way of utilizing otherwise unused resources to generate wealth, the process that hijacks your device ratchets the CPU’s functions up to 100 percent and keeps them there. If kept up for long enough, this sort of constant usage can heavily damage a smartphone’s internal components, leading to potentially expensive repairs — or worse, a whole new device. Additionally, this process takes place without consent, raising concerns over user privacy.

As with desktop drive-by cryptomining, victims can fall prey when visiting websites. According to Malwarebyte’s blog, the site usually flashes up a warning message, and asks the user to prove they’re human by entering a certain code, adding that until the code is entered the website will use the device to mine for cryptocurrency. The page claims that the warning is a countermeasure against bots, but since the code doesn’t seem to be randomized and is hard-wired into the website, it would be unlikely to be a good deterrent. In addition, once the code has been entered, the website redirects the user to Google’s homepage — not usual behavior following a captcha test.

While this issue is tied to specific webpages (a few of which Malwarebytes has identified, but the list is nowhere near complete), it’s also possible for the drive-by to affect users by way of infected ads. This is especially common, according to the blog post, in the case of certain free apps within the Android ecosystem, where a displayed ad will connect the user to the chain needed to eventually connect the device to the cryptomining page. So it’s easily possible to be infected without realizing it.

If all this sounds scary, there’s a simple way to stay safe. Malwarebytes’ blog obviously recommends that you download the Malwarebytes app to gain some security, and while that may be a good idea, there are also loads of other useful anti-virus and anti-malware apps out there that should help you keep safe in cyberspace — here’s a list of our favorites.

Mark Jansen
Mobile Evergreen Editor
Mark Jansen is an avid follower of everything that beeps, bloops, or makes pretty lights. He has a degree in Ancient &…
Google is paying a historic $85 million fine after illegally tracking Android phones
Google Logo

Google will be paying Arizona $85 million in a settlement over a 2020 lawsuit that claimed the company was illegally tracking Android users for targeted advertising.

According to a report from Bloomberg, Attorney General Mark Brnovich filed a lawsuit in May 2020 claiming that Google violated the state's Consumer Fraud Act by gathering location data from Android users, even after people turned off their location settings. At the time, Google's own employees were confused about its privacy controls, admitting that it could use some fine-tuning so that when users deny the company permission to track their data, it has to respect their decision.

Read more
The best ad-blocking apps for Android in 2022
ad blocker feat image

No one likes ads -- pop-up or otherwise -- intruding on their online experience of reading or video viewing, but ads are everywhere on the internet. One of the best ways to shield yourself from them is to install ad-blocker software that detects and disables annoying videos, graphics, and text ads that appear on your Android device while using apps or browsing websites.

Ad-blocking is controversial, which is why Google has removed specific ad-blocking apps from the Play Store. Google's business model is built on ads, so the issue goes beyond the relative quality of ads. Ads are a financial lifeline for many sites -- the difference between running a site and shutting it down. Installing an ad-blocker app on your Android device means you are likely affecting the livelihood of those who run the sites you enjoy, so try to be selective.

Read more
Google Drive, Docs, and other apps are getting way better on Android tablets
new workspace updates for android tablets.

Google is bringing the desktop experience for its core Workspace apps to Android tablets, adding some much-needed productivity flair. The changes, which come in the wake of announcements made at I/O earlier this year, are targeted at improving the split-screen multitasking experience after laying down the foundations with Android 12L.

The first and most important change is the ability to drag and drop images from an app running in one window to another app running side by side in a second window. Google says the Chrome browser and Workspace apps like Sheets will support the drag-and-drop trick for Docs and spreadsheet cells, among other services.

Read more