New 'El Gato' Android ransomware may sound cute, but it packs a punch

el gato android ransomware cat
Flickr/Jarjav CC
A killer software cat may be coming for your text messages, according to a threat report by McAfee Labs Mobile Malware Research team. It’s been dubbed “El Gato” — “The Cat,” in Spanish — because the Android malware’s code contains, of all things, an image of a yowling tabby.

McAfee discovered an instance of El Gato running on a compromised server, but noted that it appeared inert — it wasn’t password protected, and “included code words such as MyDifficultPassw.” 

Unlike the pictured kitty, El Gato is anything but cute and cuddly. The malicious software is a form of ransomware, code that renders a device unusable until the victim forks over money. This one is particularly sophisticated, from the sound of it — El Gato can encrypt files, steal text messages, and even “block access” to the affected handset or tablet entirely.

El Gato accomplishes most of its nasty shenanigans remotely, via a connection with an offshore server. It constantly monitors an infected device’s internet connection for commands and, once it receives them, executes on them. Among the most common functions McAfee’s researchers discovered were sending messages from the infected device, forwarding and deleting text messages, locking the device’s screen, and crashing a specific application. Worryingly, it’s capable of performing many of those tasks clandestinely, in the background, making them effectively invisible to victims.

The image contained in El Gato's code.
The image contained in El Gato’s code.

Most of El Gato’s commands are dispatched through a surprisingly polished web-based interface, said McAfee. They can be executed in sequence or individually — stealing a text message, frighteningly, is as easy as clicking a button in a web browser.

Perhaps worse yet, El Gato is capable of encrypting all files on the device’s internal storage — rendering it essentially unusable without the randomly generated password it generates. It contains a means of reversing the damage — the malware has can decrypt any file it secures — but presumably only after an affected user hands over whatever form of payment the attacker demands.

There’s good news, though: as far as malware goes, El Gato is relatively harmless. It hasn’t been observed in the wild yet, and its traffic is entirely unencrypted, making it susceptible to countermeasures. In other words, El Gato’s commands could be intercepted, isolated, and rendered harmless.

El Gato may be the latest instance of ransomware to emerge on Android, but it’s hardly the first. In May, cybersecurity analysts at Malwarebytes Labs discovered Cyber.Police, a malicious app that displayed a countdown timer, threatening message, and an explicit pornographic image to victims. It demanded that users purchase iTunes gift cards in exchange for an unlock code — a component which El Gato thankfully lacks, as of yet.


Google’s updated Santa Tracker entertains and teaches coding throughout December

Google's Santa Tracker is in its fifteenth year and is back again with even more features. You can have fun with more than 20 games, learn about different holiday traditions around the world, and enjoy some festive animations.

These are the 5 best free antivirus apps to protect your MacBook

Malware protection is more important than ever, even if you eschew Windows in favor of Apple's desktop platform. Thankfully, protecting your machine is as easy as choosing from the best free antivirus apps for Mac suites.

Protect yourself from the latest malware with the best free antivirus software

Malware, spyware, and adware is never fun to find on your PC. Check out our picks for the best free antivirus software, so you can rid your system of any dangerous software that might be lurking around.

The best weather apps for the iPhone

Don't rely solely on your local meteorologist to stay up to date on the weather. Take matters into your own hands with one of these weather apps, each of which brings something unique to the table.

The $200 TicWatch C2 smartwatch is now being sold in the U.S. and U.K.

Digital well-being and disconnecting from your phone is one of 2018's big trends. Mobvoi wants you to think about its TicWatch C2 smartwatch as a great way to help you use your phone less.

The Palm has been revived, and is now available in the U.S. and U.K.

A reboot of the classic Palm is finally here and it's tiny. It syncs to your phone and acts as a secondary device -- with a feature to help you disconnect from technology. The Palm will be available exclusively through Verizon for $350.

Car-branded phones need to make a U-turn if they ever want to impress

Your car and your smartphone are becoming one, yet smartphones branded or co-created by car companies are a problem. We look at the history, some examples of the best and worst, then share hopes for the future.

Yes, we really are getting a special McLaren edition of the OnePlus 6T

OnePlus has announced a partnership with McLaren F1, emphasizing a shared interest in speed. The phone company is known for producing special edition devices. Here's what we know about the OnePlus 6T Mclaren Edition.

Simplify your life with one of these wireless smartphone charger deals

Banish nightly cable fumbling with a wireless smartphone charger. If your smartphone is compatible with wireless charging, the simplicity of placing it on a pad is a beautiful thing. Wireless chargers are also excellent gifts for coworkers.

Microsoft Outlook for iOS gets big redesign, with Dark Mode coming soon

Microsoft has deployed a huge redesign for its Outlook for iOS app, which includes new blue branding and some quality-of-life improvements. Dark Mode isn't included, but it's coming soon.

Our favorite Windows apps will help you get the most out of your new PC

Not sure what apps you should be downloading for your newfangled Windows device? Here are the best Windows apps, whether you need something to speed up your machine or access your Netflix queue. Check out our categories and favorite picks.

5G’s arrival is transforming tech. Here’s everything you need to know to keep up

It has been years in the making, but 5G is finally becoming a reality. While 5G coverage is still extremely limited, expect to see it expand in 2019. Not sure what 5G even is? Here's everything you need to know.

Vanquish lag for good with the best routers for gaming

Finding the best routers for gaming is no easy task. With so many out there, how do you know which to pick? We've looked at the many options available and put together a list of our lag-free favorites.

Beddit Sleep Monitor 3.5 now available on the Apple Store

The Beddit Sleep Monitor 3.5 is now available on the Apple Store for $150. The sensor strip, which is only 2 millimeters thin, automatically tracks a wide array of sleep data when placed under the user's sheets.