logo

More Android apps riddled with malware spotted on Google Play

ID: 28b7d1af-a4b6-556d-a4ef-67e5fec92414

STIX ID: report--28b7d1af-a4b6-556d-a4ef-67e5fec92414

Feed Name: Bleeping Computer

Threat Score
75/100

Date Published: 2024-02-01

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

ESET researchers discovered VajraSpy, an Android espionage RAT embedded in 12 fake messaging/news apps (six distributed via Google Play and others on third-party stores). The modular malware can exfiltrate contacts, SMS, call logs, files, intercept encrypted messaging apps, record calls, and control the camera; telemetry points to victims primarily in Pakistan and India, and the campaign is attributed to the Patchwork APT. Although the Play-hosted apps were removed, copies remain on third-party stores, increasing ongoing risk to targeted users.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.