• Skip to primary navigation
  • Skip to main content
  • Skip to footer
Logo of Agilient Security Consultants, Australia

Agilient Security Consultants Australia

The Best Security Consultants

Menu
  • Industries
      • Aviation and Airport Security Consultants Australia
      • Defence Industry Security Consulting
      • Government Security Consulting
      • Healthcare & Hospitals Security Consulting
      • Corrections and Detention
      • Maritime Security Consultant
      • Aged Care Facilities
      • Mining, Oil & Gas
      • Public Venues & Events
      • Rail
      • School and Education Security Consultant
      • Telecommunications Security Consultant
      • Utilities
      • Places of Faith and Worship
    • advice-colleagues-communication-newIndustries
  • Services
      • Cybersecurity Consultants
      • Protective Security
      • Business Resilience
      • Building Security Consultants
      • Security Audits
      • Cyber Audits
      • Data
      • Pandemic Planning
      • Azure
      • Electronic Security
      • IT Disaster Recovery Planning
      • Business Continuity Consultants
      • Identity Theft Consultant​
      • Security Consultants
      • Security Camera and CCTV Consultant
      • ISO
      • Duress Alarms
      • Cloud
      • AWS
      • Awareness Training
      • Penetration Testing
      • Security Risk Assessment Consultants
      • Managed Security Service Provider
      • Protection against Vehicles as a Weapon
    • training-1Services
  • Locations
    • Security Consultant Melbourne
    • Security Consultant Sydney
    • Security Consultant Brisbane
    • Security Consultant Adelaide
    • Security Consultant Canberra
    • Security Consultant Perth
  • Resources
    • menumanagers-dealing-customer-agreTraining
    • working-together-newJoin The Tribe
    • Webinars_3-1.jpgUpcoming and Past Events
    • hacking-detected-shutterstock_newResources
  • Articles
  • About
    • About Us
      We are an Australian owned and operated security company specialising in risk, cybersecurity, protective security, crisis and business continuity management services.
    • frequently-asked-questions-smallFAQ’s
    • bg-menu-government-institutionsConsultant Registration
  • Contact Us
Contact Us

Jack of All Trades Malware is Now in Town

You are here: Home / Security News / Jack of All Trades Malware is Now in Town

In December 2017, Kaspersky Labs discovered and tested a new Android phone malware, known as the Trojan Loapi.  The malware is programmed to conduct several functions including mining cryptocurrency, enabling pop-up ads, DDoS attacks, and flooding contacts with spam messages.  As a result, Kaspersky has given it the moniker of ‘Jack of all trades’ malware[1].

Loapi cunningly hides in plain sight to the user.  The malware advertises itself by using icons of known anti-virus or adult entertainment apps that can be downloaded onto your phone.  Loapi does not appear to be available in the Google App Store.  This is likely due to Google’s more secure auto-approval process[2].

One of the more fascinating (and worrying) features of Loapi is its ability to protect itself from anti-virus apps once it is installed.  Loapi will create a fake message claiming that certain legitimate apps are malware and asks the user to uninstall it.  Further, the architecture of the program is multi-layered, allowing its original creators to add further layers of programming to allow Loapi to perform even more malicious functions.

Interestingly, one of the only functions it is (currently) not performing is user espionage[3].  However, it is likely that this functionality may be programmed into the malware should its original creators be inspired to do so.

As if its ability to completely invade and disrupt your phone is not enough, Loapi has one further ace up its sleeve.  The malware is able to physically destroy your phone.  After two days of testing, the Kaspersky team noticed that the phone’s battery had bulged so much it had broken the back casing of the phone!  At this point, the phone was completely inoperable.

To protect yourself from this malware, Kaspersky notes that prevention is significantly better than cure.

Several safeguards and tips to follow in order to protect yourself include:

  • Download your apps from official app stores[4] – Be it Google or Apple, do not download any apps from pop up ads or external sites. Likewise, it is a good rule of thumb to have as few apps installed as possible on your phone.
  • Install well known and ‘official’ anti-virus apps – App stores will always rate and promote anti-virus software from genuine and well-known security companies. If you are willing to pay for a more advanced app, make sure it is from a well-known company.
  • Keep an eye out on your hardware! – excessive overheating and rapid battery depletion may mean the malware might be already installed.

It is fair to say that in today’s digitally advanced world, malware is becoming more and more sophisticated.  Loapi’s structure makes it a dangerous adversary in cyber security due to its ability to adapt, change and multi-task.  It is important to remain vigilant and always be risk averse when applying any applications to your phone or other networked technology.

For assistance in Mobile Device Mangement and securing your organisations devices , please do not hesitate to contact Agilient.

The Agilient Team

[1] https://securelist.com/jack-of-all-trades/83470/

[2] https://mashable.com/2017/12/20/android-malware-caused-a-phone-to-warp/#UChI9d_vskqJ

[3] https://www.itwire.com/security/81253-new-android-malware-a-jack-of-all-trades-%E2%80%93-and-master-of-them-too.html

[4] https://www.kaspersky.com/blog/loapi-trojan/20510/

Tweet
Share

Security News

Looking for a security partner? Get in touch with Agilient.

Looking for practical and cost-effective security and risk solutions for your government department, agency or company? Speak with Australia’s leading senior security, risk and resilience experts.


Looking for a pandemic planning partner? Get in touch with Agilient.

Looking for practical and cost-effective risk management solutions for your government department, agency or company? Speak with Australia’s leading senior risk and emergency management experts.



Footer

Agilient is a proud member of

Ai Group Defence Council
Australian Industry & Defence Network
Australian Security Industry Association
Sydney Aerospace & Defence Interest Group

Company and Licensing Details:

ABN: 37 157 911 441
NSW Security Master Licence # 410783087
ACT Security Master Licence # 17502184
Vic Security Registration # 878-460-40S
Qld Security Firm Licence # 3834422

Join The Tribe

Sign up to receive our regular Agilient newsletter including the latest security, risk and resilience updates

Sign up now

Copyright © 2025 Agilient – Level 14, 275 Alfred St, North Sydney NSW 2060 Australia – 1300 341 692

Our Services

Security Consultant

Security Consultant Sydney

Security Consultant Melbourne

Security Consultant Canberra
Security Consultant Perth

Security Consultant Adelaide

Security Consultant Brisbane