Security researchers have found a new kind of mobile adware hidden in hundreds of Android apps and downloaded more than 150 million times from Google Play.
The malware masquerading as an ad-serving platform dubbed SimBad by researchers at security firm Check Point, infected more than 200 apps which, likely unbeknownst to the app developer, would open a backdoor to install additional malware as a way to outsmart Google’s app store scanning. Once installed, the downloaded malware also removes the app icon and persists in the background, loading each time the device boots up.
Once the malware retrieves its instructions from the command and control server, the malware runs through lists of web addresses in the background, serving ads to generate fraudulent revenue.
Check Point provided a list of the apps, which Google pulled from Google Play following a disclosure by the security researchers. Google’s removal from the app store does not delete the app from users’ devices.
The top ten downloaded games amount to 55 million downloads alone
Hoverboard Racing (5,000,000 downloads)
- Real Tractor Farming Simulator (5,000,000 downloads)
- Ambulance Rescue Driving (5,000,000 downloads)
- Heavy Mountain Bus Simulator 2018 (5,000,000 downloads)
- Fire Truck Emergency Driver (5,000,000 downloads)
- Farming Tractor Real Harvest Simulator (5,000,000 downloads)
- Car Parking Challenge (5,000,000 downloads)
- Speed Boat Jet Ski Racing (5,000,000 downloads)
- Water Surfing Car Stunt (5,000,000 downloads)
A portion of the diversions, for the most part reproduction amusements — consequently the malware's name — go back on Google Play to March 2017, said Aviran Hazum, versatile risk knowledge group pioneer at Check Point, in an email to TechCrunch.
Hazum said the malware may be an adware until further notice, yet can possibly develop into a bigger danger.
A Google representative, when come to, did not react give remark. The inquiry mammoth regularly doesn't talk about application expulsions, generally in light of the fact that it's an issue that continues happening. It's a long way from the first run through Google was compelled to expel applications from its as far as anyone knows confirmed application store. However, over and over, the organization needed to respond to many awful applications that sneak past its checking endeavors.
Google's authentic figures put the quantity of applications it evacuated las year at around 700,000.
Comments
Post a Comment