Skip to content

emka.web.id

menulis pengetahuan – merekam peradaban

Menu
  • Home
  • Tutorial
  • Search
Menu

Linux News Today: First Malicious App Published in Ubuntu Touch Store

Posted on October 15, 2015

The Ubuntu Touch platform is still very young, and it doesn’t have millions of apps in the store, but someone has just uploaded a malicious one that managed to get past the automated testing.

One of our readers sent us a notice about a new application that’s been uploaded to the store, which was simply named “test” (removed in the meantime) and was able to change the boot splash for the phone.

This is not something allowed, and it’s not clear if the application did anything else. The advice from the Ubuntu developers is to uninstall the application. An application capable of doing that (and possibly more) is a dangerous thing to have around, and Ubuntu developers have been quick to remove it.

At this point, it’s not exactly clear how many people downloaded it, but it was reported pretty fast by the community, so it’s unlikely that too many people got it. Also, it has a generic name, so it’s not like it popped up in searches. A much more important problem is the fact that it passed through the regular security filters, and that such important modifications were possible.

Canonical responded immediately

The Ubuntu developers will have to reassess the security measures they have in place for Ubuntu Touch, and they need to make sure that the problems will be quickly fixed. Since this is the first malicious app that made it into the store, it’s a pretty big deal.

“It has come to our attention via our community that a potentially malicious application has been submitted to the Ubuntu Store. We have identified that you are one of the users who downloaded the application. We have removed the application from the store as soon as we were made aware and are taking steps to ensure this does not happen again. The application is called ‘test’ published by developer mmrow, version 0.1 and only affects armhf based mobile devices,” reads the email sent by Canonical.

Users have been advised to uninstall it as soon as possible, so hopefully whatever the problem was, it will soon be fixed. We’ll probably see something in the changelog for the next OTA update in this regard. We also have a video via one of the Ubuntu community members (many thanks to Szymon Waliczek for taking the time to do this).

Update: Here is the first update from one of the Ubuntu developers, David Planella:

“Thanks to the quick reaction of our community, Canonical was equally reactive and able to put together a task force to investigate and take immediate measures to identify and resolve issue.

As pointed out in the article, the handful of users affected were contacted directly after an understanding of the incident had been gathered, and additional measures were taken so that no other users could be affected by the exploit.

After the initial analysis, no other apps or users are affected, the main issue has been identified and a fix deployed. The Ubuntu Store is functioning normally and apps can be securely installed as usual. We are continuing with the security analysis of our tools and infrastructure to ensure there are no further implications and will publish the full details shortly.”

Play Video

Via Softpedia

Terbaru

  • Inilah Syarat dan Prosedur Ikut Seleksi Siswa Unggul ITB Jalur Tes Tulis 2026/2027
  • Inilah Kronologi & Latar Belakang Kasus Erin Taulany vs ART Hera: Masalah Facebook Pro?
  • Inilah Alasan Kenapa Ending Film Children of Heaven diubah di Indonesia
  • Ini Alasan Hanny Kristianto Cabut Sertifikat Mualaf Richard Lee
  • Inilah Syarat Dokumen SSU ITB 2024-2026 yang Wajib Kalian Siapkan Supaya Nggak Gagal Seleksi Administrasi
  • Inilah Episyrphus Balteatus, Lalat Unik Penyamar yang Sangat Bermanfaat bagi Taman Kalian
  • Inilah Cara Lolos Seleksi Siswa Unggul ITB Lewat Jalur Tes Tulis Biar Jadi Mahasiswa Ganesha
  • Inilah Penemuan Fosil Hadrosaurus yang Ungkap Bahwa Penyakit Langka Manusia Sudah Ada Sejak Zaman Prasejarah
  • Inilah Penemuan Terbaru yang Mengungkap Bahwa Sunburn Ternyata Disebabkan Oleh Kerusakan RNA
  • Inilah Alasan Kenapa Manusia Lebih Sering Hamil Satu Bayi daripada Kembar Menurut Penelitian Terbaru
  • Inilah Syarat dan Cara Pendaftaran IMEI Internasional Mulai Mei 2026
  • Bocoran Spek Samsung Galaxy S27 Ultra Nih, Kamera 3X Hilang + Teknologi AI
  • Inilah Perbedaan Motorola G47 dan Motorola G45, Cuma Kamera 108 Megapiksel Doang?
  • Update Baru Google Gemini: Bisa Bikin File Word, PDF, Excel secara Otomatis
  • Rekomendasi Motor Listrik 2026 Anti Mogok!
  • Ini Loh Honda Vision 110, Motor Baru Seharga Beat & Rangka eSAF Khusus Pasar Eropa
  • Inilah Mobil-Mobil Paling Cocok Transisi ke Bioetanol E20 dan Biodiesel B50!
  • Inilah Ternyata Batas Minimal Daya Cas Mobil Listrik di Rumah
  • DJP Geser Batas Akhir Lapor Pajak Sampai 31 Mei 2026
  • PKB Tanggapi Dingin Usul Yusril Ihza Mahendra Soal Parliamentary Treshold 13 Kursi
  • LPTNU Kritik Keras Rencana Penutupan Prodi: Kenapa Tidak Komprehensi & Berbasis Problematika Nyata?
  • Gus Rozin PWNU Jawa Tengah Setuju Cak Imin, Konflik PBNU bikin Warga Kesal dan Tidak Produktif
  • Pengamat: Prabowo Harus Benahi KAI, Aktifkan juga Jalur Kereta Lama & Baru
  • Sekjend PBNU: Jadwal Muktamar Usulan PWNU Sejalan Hasil Rapat Pleno & Rais Aam
  • PKB Desak Hukuman Maksimal Kasus Little Aresha & Evaluasi Total Sistem Penitipan Anak secara Nasional
  • PKB Usul Modernisasi Sistem Kereta dan CCTV di Kabin Masinis, Setuju?
  • Menteri PPA Arifah Fauzi Minta Maaf Soal Polemik Pindah Gerbong Wanita di KRL
  • Cara Kirim Robux Mudah di Roblox Beli Skin Shirt Preview
  • Kronologi kasus dugaan penyebaran konten asusila oleh anak anggota DPRD Kutai Barat?
  • Inilah Alasan Kenapa Gelembung Air di Luar Angkasa Bisa Jadi Eksperimen Fisika yang Keren Banget
  • How to build a high-performance private photo cloud with Immich and TrueNAS SCALE
  • How to Build an Endgame Local AI Agent Setup Using an 8-Node NVIDIA Cluster with 1TB Memory
  • How to Master Windows Event Logs to Level Up Your Cybersecurity Investigations and SOC Career
  • How to Build Ultra-Resilient Databases with Amazon Aurora Global Database and RDS Proxy for Maximum Uptime and Performance
  • How to Build Real-Time Personalization Systems Using AWS Agentic AI to Make Every User Feel Special
  • How to Master Mistral Medium 3.5: A Comprehensive Guide to the 128B Dense Open-Source Giant
  • How to Create Professional YouTube Content Using HeyGen AI Without Showing Your Face
  • How to Boost Your Local AI Speed with Gemma 4 Multi-Token Prediction
  • How to 3x your AI speed with Google’s Gemma 4 MTP Drafters: A step-by-step guide to lightning-fast inference
  • How to Master Google Pomelli: The Ultimate AI Tool for Creating Professional Marketing Content in Minutes
  • Apa itu Spear-Phishing via npm? Ini Pengertian dan Cara Kerjanya yang Makin Licin
  • Apa Itu Predator Spyware? Ini Pengertian dan Kontroversi Penghapusan Sanksinya
  • Mengenal Apa itu TONESHELL: Backdoor Berbahaya dari Kelompok Mustang Panda
  • Siapa itu Kelompok Hacker Silver Fox?
  • Apa itu CVE-2025-52691 SmarterMail? Celah Keamanan Paling Berbahaya Tahun 2025

©2026 emka.web.id | Design: Newspaperly WordPress Theme