* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Saturday, May 23, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    The Late Show Finale, ‘The Odyssey,’ and Chicago Beaches Reopening: What You Need to Know

    AMC Entertainment Stock Surges After CEO Buys Thousands of Shares – TIKR.com

    After a Hopeful ‘Elsbeth’ Finale, Which Characters Are Coming Back for Season 4?

    Downtown St. Louis Entertainment District to Unveil Enhanced Security Measures This July

    Explore Stunning New Images of Reno Neon Line’s Exciting Next Phase

    Get Ready for an Exciting Summer with the Kid’s Art Club!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Director Andrea Saia gains stock and RSUs at Align Technology (NASDAQ: ALGN) – Stock Titan

    Teberg Empowers Future Innovators with Exciting New Sponsorship for NDSCS Electrical Technology Program

    Kitsap County introduces AI-assisted 911 technology – KIRO 7 News Seattle

    Machine Learning Personalizes Depression Treatment with the Help of Wearable Technology – UC San Diego Today

    Figure Technology Solutions to Unveil Exciting Innovations at Upcoming New York Investor Conferences

    Credo Technology (CRDO) Soars 8% as Investors Gear Up for Earnings – Yahoo Finance

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    The Late Show Finale, ‘The Odyssey,’ and Chicago Beaches Reopening: What You Need to Know

    AMC Entertainment Stock Surges After CEO Buys Thousands of Shares – TIKR.com

    After a Hopeful ‘Elsbeth’ Finale, Which Characters Are Coming Back for Season 4?

    Downtown St. Louis Entertainment District to Unveil Enhanced Security Measures This July

    Explore Stunning New Images of Reno Neon Line’s Exciting Next Phase

    Get Ready for an Exciting Summer with the Kid’s Art Club!

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Director Andrea Saia gains stock and RSUs at Align Technology (NASDAQ: ALGN) – Stock Titan

    Teberg Empowers Future Innovators with Exciting New Sponsorship for NDSCS Electrical Technology Program

    Kitsap County introduces AI-assisted 911 technology – KIRO 7 News Seattle

    Machine Learning Personalizes Depression Treatment with the Help of Wearable Technology – UC San Diego Today

    Figure Technology Solutions to Unveil Exciting Innovations at Upcoming New York Investor Conferences

    Credo Technology (CRDO) Soars 8% as Investors Gear Up for Earnings – Yahoo Finance

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Over 90 malicious Android apps with 5.5M installs found on Google Play

May 29, 2024
in Technology
Over 90 malicious Android apps with 5.5M installs found on Google Play
Share on FacebookShare on Twitter

Android

Over 90 malicious Android apps were found installed over 5.5 million times through Google Play to deliver malware and adware, with the Anatsa banking trojan seeing a recent surge in activity.

Anatsa (aka “Teabot”) is a banking trojan that targets over 650 applications of financial institutions in Europe, the US, the UK, and Asia. It attempts to steal people’s e-banking credentials to perform fraudulent transactions.

In February 2024, Threat Fabric reported that since late last year, Anatsa had achieved at least 150,000 infections via Google Play using various decoy apps in the productivity software category.

Today, Zscaler reports that Anatsa has returned to Android’s official app store and is now distributed via two decoy applications: ‘PDF Reader & File Manager’ and ‘QR Reader & File Manager.’

Anatsa dropper appsAnatsa dropper apps
Source: Zscaler

At the time of Zscaler’s analysis, the two apps had already amassed 70,000 installations, demonstrating the high risk of malicious dropper apps slipping through the cracks in Google’s review process.

One thing that helps Anatsa dropper apps evade detection is the multi-stage payload loading mechanism that involves four distinct steps:

Dropper app retrieves configuration and essential strings from the C2 server
DEX file containing malicious dropper code is downloaded and activated on the device
Configuration file with Anatsa payload URL is downloaded
DEX file fetches and installs the malware payload (APK), completing the infection

Malware-loading stepsMalware-loading steps
Source: Zscaler

The DEX file also performs anti-analysis checks to ensure the malware won’t be executed on sandboxes or emulating environments.

Once Anatsa is up and running on the newly infected device, it uploads the bot configuration and app scan results and then downloads the injections that match the victim’s location and profile.

Data exchange between the malware and the C2Data exchange between the malware and the C2
Source: Zscaler

Other Google Play threats

Zscaler reports that during the past couple of months, it has also discovered over 90 malicious applications on Google Play, which were collectively installed 5.5 million times.

Most of the malicious apps impersonated tools, personalization apps, photography utilities, productivity, and health & fitness apps.

The five malware families dominating the scene are Joker, Facestealer, Anatsa, Coper, and various adware.

Google Play malware and dropper app typesGoogle Play malware (left) and dropper app types (right)
Source: Zscaler

Though Anatsa and Coper only account for 3% of the total malicious downloads from Google Play, they are far more dangerous than the others, capable of performing on-device fraud and stealing sensitive information.

When installing new apps on Google Play, review the requested permissions and decline those associated with high-risk activities such as Accessibility Service, SMS, and contacts list.

The researchers did not disclose the names of the 90+ apps and whether they had been reported to Google for takedown.

However, at the time of writing this, the two Anatsa dropper apps discovered by Zscaler have been removed from Google Play.

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : BleepingComputer – https://www.bleepingcomputer.com/news/security/over-90-malicious-android-apps-with-55m-installs-found-on-google-play/

Tags: Androidmalicioustechnology
Previous Post

US govt sanctions cybercrime gang behind massive 911 S5 botnet

Next Post

First American December data breach impacts 44,000 people

The Late Show Finale, ‘The Odyssey,’ and Chicago Beaches Reopening: What You Need to Know

May 23, 2026

Paxton Powers Ahead in Texas Senate Race Against Cornyn, Fueled by Trump’s Endorsement

May 23, 2026

Director Andrea Saia gains stock and RSUs at Align Technology (NASDAQ: ALGN) – Stock Titan

May 23, 2026

Epic Clash: Athletics Face Off Against the San Diego Padres in Game 50

May 23, 2026

Enhanced Ecological Risk Assessment of Phenol in Sediments Using Species Sensitivity Distribution and Water Toxicity Data

May 23, 2026

Scientists Uncover Mysterious Hidden State in “Sandwich” Molecules

May 23, 2026

Seattle’s IMAX Theater at Pacific Science Center Pauses Feature Films with No Return Planned for 2026

May 23, 2026

Schoodic Institute Announces Thrilling Lineup for 2026 Summer Lecture Series

May 23, 2026

Chelsea’s Cole Palmer Urged to Transform World Cup Snub into a Stunning Comeback

May 23, 2026

The Joyless Economy’: A Riveting Journey into Horror, Desire, and the Art of Cinema

May 23, 2026

Categories

Archives

May 2026
M T W T F S S
 123
45678910
11121314151617
18192021222324
25262728293031
« Apr    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,227)
  • Economy (1,250)
  • Entertainment (22,128)
  • General (21,669)
  • Health (10,283)
  • Lifestyle (1,261)
  • News (22,149)
  • People (1,251)
  • Politics (1,270)
  • Science (16,464)
  • Sports (21,747)
  • Technology (16,235)
  • World (1,241)

Recent News

The Late Show Finale, ‘The Odyssey,’ and Chicago Beaches Reopening: What You Need to Know

May 23, 2026

Paxton Powers Ahead in Texas Senate Race Against Cornyn, Fueled by Trump’s Endorsement

May 23, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version