Security News > 2022 > October > Android adware apps in Google Play downloaded over 20 million times
Security researchers at McAfee have discovered a set of 16 malicious clicker apps that managed to sneak into Google Play, the official app store for Android.
Clicker apps are a special category of adware that loads ads in invisible frames or in the background and clicks them to generate revenue for their operators.
All 16 apps have been removed from Google Play after McAfee reported them.
The apps download their configuration from a remote location via an HTTP request and register an FCM listener to receive push messages.
McAfee analysts say that the liveposting SDK can operate on its own, too, possibly to create only ad impressions, but recent versions of the apps feature both libraries.
Some ways to discover if apps of this kind are present on the device, users should check battery and internet usage.
News URL
Related news
- Free VPN apps on Google Play turned Android phones into proxies (source)
- Apps secretly turning devices into proxy network nodes removed from Google Play (source)
- Google Warns: Android Zero-Day Flaws in Pixel Phones Exploited by Forensic Companies (source)
- Google rolls out new Find My Device network to Android devices (source)
- Google rejected 2.28 million risky Android apps from Play store in 2023 (source)
- Google now pays up to $450,000 for RCE bugs in some Android apps (source)
- Bug hunters can get up to $450,000 for an RCE in Google’s Android apps (source)