Saturday, December 2, 2023

Malicious Fleeceware apps on the Google Play Found Installed More than 600 Million Downloads

Fleeceware apps continue to be a problem on Google Play, these app publishers overcharge users for basic functionality if they don’t cancel the subscription before the trial ends.

The app publishers take advantage of the business model in which user downloads and use the app for a short trial period for no charge.

If the user fails to uninstall the app and inform the developer that they are not interested at the end of the short trial period, then the app developers charge the users.

Fleeceware on Google Play

Sophos observed several Fleeceware apps on Google play store that cause monetary damage to users. these apps found to be installed more than 600 million times in total.

Fleeceware apps
Fleeceware Apps found

Also, some of the apps such as keyboard apps allegedly transfer the text typed by the users to the servers located in China.

The apps associated with categories such as entertainment or utility apps, including fortune-tellers, instant messengers, video editors, and beauty apps.

Several users complain that even after following the subscription rules, they have been charged by the app developers.

Some of the apps mimic the original apps in the design and other features, but there is a difference in the subscription.

Fleeceware apps
Mimic the original App

The bad news is that some of the apps on the play store claim they have “1 million, 5 million, 10 million, or even 100 million installs.”

Researchers believe these app developers may use some paid services to reach the users. Also, they use to add fake reviews.

A high number of reviews and installs let the apps appear at the top of the list and attract the users.

A full list of the apps and download counts can be found here. Sophos has reported malicious apps to the Google Play Store.

You can follow us on LinkedinTwitterFacebook for daily Cybersecurity and hacking news updates

Website

Latest articles

Active Attacks Targeting Google Chrome & ownCloud Flaws: CISA Warns

The CISA announced two known exploited vulnerabilities active attacks targeting Google Chrome & own...

Cactus Ransomware Exploiting Qlik Sense code execution Vulnerability

A new Cactus Ransomware was exploited in the code execution vulnerability to Qlik Sense...

Hackers Bypass Antivirus with ScrubCrypt Tool to Install RedLine Malware

The ScrubCrypt obfuscation tool has been discovered to be utilized in attacks to disseminate the RedLine Stealer...

Hotel’s Booking.com Hacked Logins Let Attacker Steal Guest Credit Cards

According to a recent report by Secureworks, a well-planned and advanced phishing attack was...

Critical Zoom Vulnerability Let Attackers Take Over Meetings

Zoom, the most widely used video conferencing platform has been discovered with a critical...

Hackers Using Weaponized Invoice to Deliver LUMMA Malware

Hackers use weaponized invoices to exploit trust in financial transactions, embedding malware or malicious...

US-Seized Crypto Currency Mixer Used by North Korean Lazarus Hackers

The U.S. Treasury Department sanctioned the famous cryptocurrency mixer Sinbad after it was claimed...

API Attack Simulation Webinar

Live API Attack Simulation

In the upcoming webinar, Karthik Krishnamoorthy, CTO and Vivek Gopalan, VP of Products at Indusface demonstrate how APIs could be hacked.The session will cover:an exploit of OWASP API Top 10 vulnerability, a brute force account take-over (ATO) attack on API, a DDoS attack on an API, how a WAAP could bolster security over an API gateway

Related Articles