Over 400 Million Android Users at Risk Of Dangerous Malware in 101 Apps

Over 400 million Android users are at risk as dangerous malware has infected over 100 apps on Google Play Store. The trojan malware, dubbed SpinOK, is disguised as an advertising software development kit (SDK) and appears legitimate, using mini-games and daily rewards to keep users engaged. However, once installed, it can steal personal data from leading smartphone models and send it to a remote server controlled by hackers.

In partnership with BleepingComputer, researchers at Dr. Web have flagged a new hazardous malware that has infected more than 100 Android applications available for download on the Google Play Store. Dubbed ‘SpinOK’ by security experts, the trojan is disguised as an advertising SDK that appears harmless and offers app developers the option to add various features, such as mini-games and tasks that reward users with prizes. Unfortunately, this SDK also can steal personal information from leading Android devices, including file exfiltration and clipboard modification functionality. This allows hackers to steal private images, videos, and documents, as well as to intercept cryptocurrency payments and redirect them to their crypto wallets.

What makes the situation more concerning is that these apps have been downloaded 421,290,300 times, putting many Android users at risk of cyber threats. The good news is that, after reporting the problem to Google, most of these infected apps have now been removed from the store. However, users are still advised to check for updates on the affected apps and scan their devices with a trusted antivirus solution to prevent a potential infection.

A similar threat, dubbed Goldoson by cybersecurity firm McAfee, has infected 60 apps with over 100 million downloads from the official Google Play Store. This rogue component is embedded in a third-party library used by the affected apps. It has been found to collect information on the user’s installed apps, Wi-Fi and Bluetooth-connected devices, and GPS locations. It can also click ads in the background without the user’s knowledge, a technique known as ad fraud.

Following responsible disclosure to Google, all of these affected apps have now been removed from the store, and users are advised to avoid downloading any apps from the Play Store that have not been updated for some time. In addition, users are also urged to use only trustworthy antivirus solutions on their smartphones and to update the Android operating system with its latest security patches to reduce the chances of infection by malware like these.

While Android is an excellent platform for mobile computing, it remains a target of cyber criminals who seek new ways to exploit and take advantage of the millions of devices out there. Fortunately, most of these malware attacks target desktop computers, but this doesn’t mean that Android users should be complacent or assume that their device is safe from such threats.

Most Popular

More from Walops

RECOMMENDED FOR YOU

Tesla’s China-Made EV Sales Decline by 4.3% in November

Data from the China Passenger Car Association revealed on Tuesday that U.S. automaker Tesla saw a 4.3% year-on-year decline in sales of its China-made electric vehicles, totaling 78,856 units in November. However, deliveries of its locally produced Model 3 and Model Y vehicles rose by 15.5% compared...

South Korean Regulators Charge Meta $15 Million for Collecting User Information

South Korea's data protection agency has fined Meta Platforms, Facebook's parent company, approximately $15 million for collecting sensitive user data and sharing it with advertisers without proper legal grounds. The Personal Information Protection Commission reported that Meta gathered information on around 980,000 South Korean Facebook users, including...

UK to Enforce Disposable Vape Ban in 2025 Amid Efforts to Curb Teen Vaping

From next summer, it will be illegal to sell disposable vapes in England as the government seeks to tackle environmental harm and rising usage levels among children. The Department for Environment, Food and Rural Affairs (Defra) said it had laid legislation to ban the sale of the...

A Brazilian Legal Battle: Musk’s $3 Million Fine

Elon Musk, the tech mogul behind Tesla, SpaceX, and now X (formerly Twitter), has been embroiled in a legal dispute in Brazil. A Brazilian judge has ordered the seizure of $3 million from Musk's assets to cover fines imposed on X for allegedly failing to comply with...

Starlink Takes Flight: High-Speed Internet Now on Over 1,000 Aircraft

In a significant milestone for aviation and connectivity, SpaceX CEO Elon Musk announced that Starlink, the company's satellite internet service, is now operational on over 1,000 aircraft. This achievement marks a substantial leap forward in providing passengers with seamless, high-speed internet access during their flights.Starlink has rapidly...

Finding Your Next Binge: Fire TV Gets AI-Powered Search for Personalized Recommendations

Feeling lost in the vast ocean of streaming content? Amazon Fire TV is introducing a new AI-powered search feature, a convenient solution to your dilemma. This innovative upgrade, powered by Amazon's large language model (LLM), is designed to ease the burden of choice by providing personalized content...

Israel to Unveil Plan for Replacing Hamas Governance in Northern Gaza

Israel will "soon" implement a plan to replace Hamas' governance in northern Gaza, according to Israeli National Security Advisor Tzachi Hanegbi. Speaking at Reichman University's annual Herzliya Conference, Hanegbi stated that the collapse of Hamas' military capabilities will create opportunities "for countries that desire an alternative government...

GameStop Stock Surges on Roaring Kitty’s Return

GameStop Corp. (GME) witnessed a significant surge in pre-market trading on Monday, June 3rd, 2024, following an unexpected Reddit post from Keith Gill, popularly known as 'Roaring Kitty.' Gill, a key figure during the meme stock frenzy of 2021, sparked the current surge by disclosing a staggering...

Safety vs Innovation: OpenAI Shaken by Executive Resignation

OpenAI, a leading research institute focused on artificial intelligence (AI), has been rocked by the departure of a key executive, Jan Leike. Leike, who led the company's "Superalignment" team, resigned publicly, citing concerns that the pursuit of flashy products overshadowed safety priorities.Leike's team focused on ensuring that...

LATAM Flight Makes Rough Landing in Auckland, 50 Passengers Injured

On Monday, a LATAM flight from Sydney to Auckland encountered severe turbulence, leading to the hospitalization of thirteen passengers. The airline, LATAM Airlines, stated that flight LA800 experienced a "technical event" causing significant movement during the journey. Despite not disclosing specific details about the incident, LATAM Airlines...

Escalation in Black Sea? Ukraine Says It Destroyed Russian Patrol Boat

Ukraine claimed Tuesday that its forces had destroyed a Russian military patrol boat on the Black Sea near the Crimean peninsula, annexed by Russia 10 years ago. The strategic waterway has become an increasingly important battleground of Russia's two-year invasion as Ukrainian forces claim a string of...

Guangzhou Bridge Disaster: Barge Crash Plunges Vehicles into Water, Two Confirmed Dead

On Thursday, Chinese state media reported a tragic incident in the Pearl River Delta near Guangzhou city, where two individuals lost their lives, and three are currently unaccounted for. The unfortunate event unfolded when a barge collided with a bridge over the Hongqili Waterway, causing a section...