logo

331 Malicious Apps with 60 Million Downloads on Google Play Bypass Android 13 Security

ID: 8d17fe03-d455-5884-ab87-bafe373a1928

STIX ID: report--8d17fe03-d455-5884-ab87-bafe373a1928

Feed Name: cybersecurityNews.com

Threat Score
80/100

Date Published: 2025-03-18

Date Updated: 2026-04-21

Author: Guru Baran

...
...

Bitdefender discovered a widespread Google Play campaign of 331 malicious apps (≈60M+ downloads) that abused Android 13 APIs to hide icons, launch fullscreen phishing activities without user interaction, persist via services/native code, and perform ad fraud and credential theft. The apps used advanced obfuscation and runtime anti-analysis checks; Google removed identified apps but the campaign was active as recently as March 4, 2025.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.