Android malware has been uncovered lurking on the Google Play app store that poses as a game while making calls to premium-rate numbers in the background.
The CallJam malware was spotted by computer security researchers Check Point and is the latest found to have infiltrated the Google Play online shop in spite of Google’s screening procedures.
The game remained on Google Play until the company was notified by Check Point, in spite of users pointing out its deceptive activities in comments such as: “It dialled a wrong international number. Continuously. Wtf.”
The malware, which posed as a game called ‘Gems Chest for Clash Royale’, had been removed from Google Play’s listings as of Monday, but Check Point said it had already been downloaded between 100,000 to 500,000 times since it was placed there in May.
Aside from the dialling agent, the malware also sends victims to malicious websites that display revenue-generating advertisements.
CallJam does not make use of any complex hacks to make its calls, simply asking the targeted user for permission to do so, Check Point noted.
“Most users grant permissions willingly, often without reading or fully understanding information about the permissions they are granting,” the firm said in an advisory.
The malware was able to gain a high user rating of four out of five by forcing users to rate it before they could begin playing.
“This is another reminder that attackers can develop high-reputation apps and distribute them on official app stores, putting devices and sensitive data at risk,” Check Point said.
Are you a security pro? Try our quiz!
CMA receives 'provisional recommendation' from independent inquiry that Apple,Google mobile ecosystem needs investigation
Government minister flatly rejects Elon Musk's “unsurprising” allegation that Australian government seeks control of Internet…
Northvolt files for Chapter 11 bankruptcy protection in the United States, and CEO and co-founder…
Targetting AWS, Microsoft? British competition regulator soon to announce “behavioural” remedies for cloud sector
Move to Elon Musk rival. Former senior executive at X joins Sam Altman's venture formerly…
Bitcoin price rises towards $100,000, amid investor optimism of friendlier US regulatory landscape under Donald…