logo

BadNews: Mobile Attackers Pivot To Malicious Ads

ID: 6d92159b-c192-5163-94cb-9a794e0dc4e3

STIX ID: report--6d92159b-c192-5163-94cb-9a794e0dc4e3

Feed Name: Security Ledger

Threat Score
70/100

Date Published: 2013-04-22

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

Lookout discovered a large-scale Android malware campaign dubbed "BadNews" where malicious apps on Google Play (reported 2–9 million installs) connected devices to a fake advertising network to push fake news, malicious links and secondary payloads including a premium-SMS trojan (AlphaSMS). The malware used delayed activation to evade Google's Bouncer; Google removed the apps after notification. Lookout recommends continuous monitoring of third-party libraries and mobile application behavior to mitigate similar threats.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.