Google nukes 224 Android malware apps behind massive ad fraud campaign
ID: 41ab2ba3-3653-5147-bbdd-19c51b6a3d71
STIX ID: report--41ab2ba3-3653-5147-bbdd-19c51b6a3d71
Feed Name: Bleeping Computer
SlopAds is a large-scale Android ad-fraud operation discovered by HUMAN's Satori team in which 224 Google Play apps (over 38 million installs across 228 countries) used obfuscation, Firebase Remote Config, and steganography to reconstruct a 'FatModule' malware on devices and drive ~2.3 billion fraudulent ad requests per day via hidden WebViews; Google removed the apps and updated Play Protect but the campaign's sophistication and infrastructure suggest the actors may iterate and continue similar attacks.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
