This wallet-draining Android malware has been downloaded millions of times

Google has removed eight Android apps found to be carrying malware from its mobile app store. The apps, which include camera apps, video ...

Google has removed eight Android apps found to be carrying malware from its mobile app store.

The apps, which include camera apps, video editors, emoji keyboards, and similar, have had more than three million downloads between them, and were reported to the company more than a year ago.

In June 2021, cybersecurity researchers from Evina tracked down the eight apps that were carrying Autolycos, adware that secretly subscribes its users to premium services and, most likely, earns commission, and reported it to Google. 

Red flags everywhere

After acknowledging receiving the report, it took Google six months to act on it, the firm claimed.

Autolycos was described as malware performing “stealthy malicious behavior”, such as executing URLs on a remote browser, and then including the results in HTTPS requests, instead of Webview, to avoid detection by both users and mobile antivirus solutions. 

The key red flag that could have tipped users off, that these were, in fact, malicious apps, was the fact that they requested permission to read SMS content, after installation. 

Usually, permission requests are the best way to spot if an app is malicious, or not. A calculator app does not need access to the contacts list, SMS apps, or similar. 

Another red flag was user reviews on the Play Store. While apps with fewer downloads did have better reviews, thanks to bots, those with more downloads have had plenty of disgruntled and unsatisfied customers expressing their opinions in the comments section.

Autolycos’ operators used social media channels, such as Facebook, to promote and distribute their apps. Just one out of the eight apps discovered has had 74 ad campaigns on Facebook alone. 

Users can monitor suspicious mobile apps by keeping tabs on background internet data and battery consumption. Furthermore, all Android users should keep Play Protect enabled, and make sure they never download apps from unverified sources. Even when downloading from the Play Store, make sure to read the reviews.

Via: BleepingComputer



from TechRadar - All the latest technology news https://ift.tt/QE53Rqk
via IFTTT

COMMENTS

BLOGGER
Name

Apps,3858,Business,151,Camera,1155,Earn $$$,3,Gadgets,1741,Games,926,GTA,1,Innovations,3,Mobile,1697,Paid Promotions,5,Promotions,5,Sports,1,Technology,8106,Trailers,796,Travel,37,Trending,4,Trendly News,25335,TrendlyNews,126,Video,5,XIAOMI,13,YouTube - 9to5Google,125,
ltr
item
Trendly News | #ListenNow #Everyday #100ShortNews #TopTrendings #PopularNews #Reviews #TrendlyNews: This wallet-draining Android malware has been downloaded millions of times
This wallet-draining Android malware has been downloaded millions of times
Trendly News | #ListenNow #Everyday #100ShortNews #TopTrendings #PopularNews #Reviews #TrendlyNews
http://www.trendlynews.in/2022/07/this-wallet-draining-android-malware.html
http://www.trendlynews.in/
http://www.trendlynews.in/
http://www.trendlynews.in/2022/07/this-wallet-draining-android-malware.html
true
3372890392287038985
UTF-8
Loaded All Posts Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH ALL POSTS Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago Followers Follow THIS PREMIUM CONTENT IS LOCKED STEP 1: Share. STEP 2: Click the link you shared to unlock Copy All Code Select All Code All codes were copied to your clipboard Can not copy the codes / texts, please press [CTRL]+[C] (or CMD+C with Mac) to copy