Over 60K Android apps found secretly installing adware for last 6 months


San Francisco, Jun 12 (IANS): For the past six months, more than 60,000 Android apps disguised as legitimate applications have quietly installed adware on mobile devices while remaining undetected.

According to cybersecurity firm Bitdefender, to date, it has discovered 60,000 completely different samples (unique apps) carrying the adware and suspects there is much more in the wild, reports BleepingComputer.

Started in October 2022, the campaign distributed fake security software, game cracks, cheats, VPN software, Netflix, and utility apps through third-party sites.

Users in the US are primarily targeted, followed by South Korea, Brazil, Germany, the UK, and France.

Moreover, the report showed that the malicious apps are hosted on third-party websites in Google Search that push APKs, Android packages that allow users to manually install mobile apps, rather than on Google Play.

When users visit the sites, they will either be redirected to advertisements or prompted to download the app they are looking for.

The download sites are specifically designed to distribute malicious Android apps as APKs, which, when installed, infect Android devices with adware, the report said.

Meanwhile, Google has removed 32 malicious extensions from the Chrome Web Store, totalling 75 million downloads, that could alter search results and push spam or unwanted ads.

The extensions included legitimate functionality to keep users unaware of the malicious behaviour, which was delivered in obfuscated code.

 

  

Top Stories


Leave a Comment

Title: Over 60K Android apps found secretly installing adware for last 6 months



You have 2000 characters left.

Disclaimer:

Please write your correct name and email address. Kindly do not post any personal, abusive, defamatory, infringing, obscene, indecent, discriminatory or unlawful or similar comments. Daijiworld.com will not be responsible for any defamatory message posted under this article.

Please note that sending false messages to insult, defame, intimidate, mislead or deceive people or to intentionally cause public disorder is punishable under law. It is obligatory on Daijiworld to provide the IP address and other details of senders of such comments, to the authority concerned upon request.

Hence, sending offensive comments using daijiworld will be purely at your own risk, and in no way will Daijiworld.com be held responsible.