Tag: Google Play

Google to verify all Android devs to block malware on Google Play
News

Google to verify all Android devs to block malware on Google Play

Google is launching "Developer Verification," a new protection for Android, to prevent malware from being installed by sideloaded programs that are downloaded from sources other than the official Google Play app store. Since August 31, 2023, publishers have been required to submit a D-U-N-S (Data Universal Numbering System) number for apps on Google Play. According to Google, this has significantly decreased malware on the platform. The extensive developer ecosystem outside of the app store, however, was not covered by the system. According to Google's announcement, we've seen how bad actors utilize anonymity to hurt people by posing as developers and using their brand image to make convincingly fraudulent apps. This threat is enormous: according to our most recent data, malwa...
Anatsa Android Banking Trojan Hits 90,000 Users with Fake PDF App on Google Play
News

Anatsa Android Banking Trojan Hits 90,000 Users with Fake PDF App on Google Play

When customers try to access their banking application, the virus, which was posing as a "PDF Update" for a document viewer program, has been observed displaying a misleading overlay that says the service has been temporarily suspended due to planned maintenance. According to a report provided to The Hacker News, Dutch mobile security firm ThreatFabric stated that this is at least the third time that Anatsa has targeted its operations at mobile banking clients in the US and Canada. Anatsa is being made available through the official Google Play Store, just as other campaigns. Since at least 2020, Anatsa—also known as TeaBot and Toddler has been known to operate, usually distributing itself read more about Anatsa Android Banking Trojan Hits 90000 Users with Fake PDF App on Google Pla...
Malicious Android ‘Vapor’ apps on Google Play installed 60 million times
News

Malicious Android ‘Vapor’ apps on Google Play installed 60 million times

More than 300 malicious Android apps that sought to steal credit card numbers and credentials or operate as adware downloaded 60 million things from Google Play. IAS Threat Lab initially discovered the operation, classifying the malicious activity as "Vapor" and stating that it has been going on since early 2024. 180 apps were found by IAS to be a part of the Vapor campaign, which generates 200 million fake bid requests every day in order to commit widespread ad fraud. According to a recent Bitdefender analysis, there are now 331 dangerous apps, with several infections reported in South Korea, Brazil, the US, Mexico, and Turkey. According to Bitdefender, the apps show out-of-context advertisements read more about Malicious Android 'Vapor' apps on Google Play installed 60 milli...
8 Million Android Users Hit by SpyLoan Malware in Loan Apps on Google Play
News

8 Million Android Users Hit by SpyLoan Malware in Loan Apps on Google Play

According to new research from McAfee Labs, SpyLoan malware is present in more than a dozen malicious Android apps that have been found on the Google Play Store and downloaded more than 8 million times overall. According to a security researcher's analysis released last week, these PUP (potentially unwanted programs) apps use social engineering techniques to fool users into divulging private information and granting additional mobile app permissions, which can result in extortion, harassment, and financial loss. The recently uncovered apps aim to lure gullible users in Mexico, Colombia, Senegal, Thailand, Indonesia, Vietnam, Tanzania, Peru, and Chile by promising fast loans with low conditions read more about 8 Million Android Users Hit by SpyLoan Malware in Loan Apps on Google Play...
Fake Trading Apps Target Victims Globally via Apple App Store and Google Play
News

Fake Trading Apps Target Victims Globally via Apple App Store and Google Play

Group-IB research show that a widespread fraud campaign used phishing websites and fraudulent trading apps available on the Apple App Store and Google Play Store to trick consumers. As part of a consumer investment fraud scheme known as "pig butchering," potential victims are tricked into investing in cryptocurrency or other financial instruments by pretending to be in a romantic relationship or to be an investment advisor. This campaign is one part of the scheme. These kinds of social engineering and manipulation schemes frequently result in the victims losing their money, and occasionally they even involve the demand for additional payments and other levies in order to extract even more money from them read more about Fake Trading Apps Target Victims Globally via Apple App Store a...
Android spyware ‘Mandrake’ hidden in apps on Google Play since 2022
News

Android spyware ‘Mandrake’ hidden in apps on Google Play since 2022

Google Play, the official app store for the platform, has revealed that five programs that have been downloaded 32,000 times include a new version of the Android malware known as "Mandrake." In 2020, Bitdefender released the first report on Mandrake. The experts noted that the virus has been active in the field since at least 2016 and highlighted its advanced espionage capabilities. Kaspersky has recently shown that five apps uploaded to Google Play in 2022 allowed a new Mandrake version with improved obfuscation and evasion to infiltrate the store. The last app, AirFS, which was the most successful in terms of popularity and infections, was deleted at the end of March 2024 read more about Android spyware 'Mandrake' hidden in apps on Google Play since 2022. Get up to date on t...
Over 90 malicious Android apps with 5.5M installs found on Google Play
News

Over 90 malicious Android apps with 5.5M installs found on Google Play

With the Anatsa banking trojan experiencing a recent spike in activity, over 90 malicious Android apps have been identified installed over 5.5 million times through Google Play to distribute malware and adware. A banking trojan called Anatsa (also known as "Teabot") targets more than 650 apps used by financial institutions across Asia, Europe, the US, and the UK. It aims to carry out fraudulent activities by stealing users' e-banking credentials. Threat Fabric stated in February 2024 that Anatsa has used a variety of phony productivity software apps on Google Play to obtain at least 150,000 infections since the end of the previous year. Anatsa has made a comeback to the official Android app market, according to Zscaler, and is currently available through two spoof apps called rea...
More Android apps riddled with malware spotted on Google Play
News

More Android apps riddled with malware spotted on Google Play

Twelve malicious applications were discovered to include the Android remote access trojan (RAT) VajraSpy; six of these applications were available on Google Play between April 1, 2021, and September 10, 2023. The malicious apps are still available on third-party app stores after being deleted from Google Play. They pose as news or messaging apps. Installing the apps resulted in the users' becoming infected with VajraSpy, which gave the virus access to their contacts, messages, and, depending on the permissions allowed, even phone records. The campaign's operators, according to ESET researchers who found it, are the Patchwork APT organization, which has been operating since at least late 2015 read more More Android apps riddled with malware spotted on Google Play. Get up to dat...
Google Play Store Highlights ‘Independent Security Review’ Badge for VPN Apps
News

Google Play Store Highlights ‘Independent Security Review’ Badge for VPN Apps

Google is launching a new banner to draw attention to the "Independent security review" label for Android VPN apps that have passed a Mobile Application Security Assessment (MASA) audit in the Play Store's Data safety section. According to Nataliya Stanetsky of the Android Security and Privacy Team, "We've launched this banner beginning with VPN apps due to the sensitive and significant amount of user data these apps handle." A global security standard like the Mobile Application Security Verification Standard (MASVS) can be independently used by developers to validate their apps through MASA, giving users more information and empowering them to make educated read more Google Play Store Highlights Independent Security Review Badge for VPN Apps. Get up to date on the latest cybers...
Millions Infected by Spyware Hidden in Fake Telegram Apps on Google Play
News

Millions Infected by Spyware Hidden in Fake Telegram Apps on Google Play

There has been spyware discovered in the Google Play Store that poses as altered versions of Telegram and is intended to collect private data from infected Android devices. Igor Golovin, a security researcher with Kaspersky, claims that the apps have malicious capabilities that allow them to collect and transmit names, user IDs, contacts, phone numbers, and chat messages to a server under the control of an attacker. The Russian cybersecurity company has given the operation the codename "Evil Telegram."Before Google removed them, the apps had been downloaded millions of times overall read more Millions Infected by Spyware Hidden in Fake Telegram Apps on Google Play. Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our comprehensive coverag...