331 Malicious Apps with 60 Million Downloads on Google Play Bypass Android 13 Security
ID: 8d17fe03-d455-5884-ab87-bafe373a1928
STIX ID: report--8d17fe03-d455-5884-ab87-bafe373a1928
Feed Name: cybersecurityNews.com
Threat Score
Bitdefender discovered a widespread Google Play campaign of 331 malicious apps (≈60M+ downloads) that abused Android 13 APIs to hide icons, launch fullscreen phishing activities without user interaction, persist via services/native code, and perform ad fraud and credential theft. The apps used advanced obfuscation and runtime anti-analysis checks; Google removed identified apps but the campaign was active as recently as March 4, 2025.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
