Google has removed three apps from its Google Play store after they were found to be infected with adware that had already been downloaded millions of times.
Card game app Durak was the most downloaded of the malicious apps with 10 million installations, Google Play has revealed.
Like the other infect apps, it functioned normally when installed – seemingly only affecting the device at least a couple of hours after you next reboot it. In some cases, the adware takes up to a month to reveal itself.
Bizarrely, some users of the infected apps were directed to harmless security apps on Google Play. “But even if you install the security apps, the undesirable ads popping up on your phone don‘t stop,” Chytry commented. “This kind of threat can be considered good social engineering. Most people won‘t be able to find the source of the problem and will face fake ads each time they unlock their device. I believe that most people will trust that there is a problem that can be solved with one of the apps advertised ‘solutions’ and will follow the recommended steps, which may lead to an investment into unwanted apps from untrusted sources.”
Google’s developer content policy forbids adverts through system-level notifications unless it is an integral feature of an app. But, in this instance, the malicious adverts were being delivered by three legitimate third-party ad networks.
Google today confirmed it has so far removed three infected apps from its Play store, including Durak, along with an IQ test app and Russian history app both aimed at Russian-language users.
How much do you know about IT security? Take our quiz!
All Cybertrucks manufactured between November 2023 and February 2025 recalled over trim that can fall…
As Musk guts US federal agencies, SEC issues summons over Elon's failure to disclose ownership…
Moonshot project Taara spun out of Google, uses lasers and not satellites to provide internet…
Pebble creator launches two new PebbleOS-based smartwatches with 30-day battery life, e-ink screens after OS…
Amazon loses appeal in Luxembourg's administrative court over 746m euro GDPR fine related to use…
Nvidia, xAI to participate in project backed by BlackRock, Microsoft to invest $100bn in AI…