It’s been just two months since researcher Karsten Nohl demonstrated an attack he called BadUSB to a standing-room-only crowd at the Black Hat security conference in Las Vegas, showing that it’s possible to corrupt any USB device with insidious, undetectable malware.
Malware that cannot be uninstalled by the end user is being pre-loaded onto some cheap Android smartphones. The malware is pre-loaded into the system directory of the handsets at an unknown point within the supply chain.