Chat Apps Quietly Snapping Pictures, Recording Audio - Immediate Deletion Advised
Austin JayESET researchers have identified Android apps designed to spy on users, with six found on Google Play and others on VirusTotal. Disguised as messaging or news apps, these apps secretly run a remote access trojan called VajraSpy, linked to the Patchwork APT campaign.
The primary function is extensive spying, exploiting granted permissions to steal contacts, files, call records, and text messages.
Some can access WhatsApp and Signal chats, record calls, and intercept notifications. The apps also transmit device locations and installed app names to command and control centers. Particularly concerning is their ability to capture photos and record surrounding audio.
The Google Play apps alone amassed 1,400 downloads, primarily targeting users in Pakistan and India.
Love-trap scams have taken a malicious turn as cybercriminals exploit the emotions of users through deceptive Android apps. Researchers from ESET have exposed a list of these harmful apps that primarily function as spyware, secretly collecting user data.
Six identified apps were on Google Play, while the rest were hosted on VirusTotal. The rogue apps masquerade as legitimate messaging apps, with one posing as a news app. Operating silently in the background, they execute remote access trojan (RAT) code, specifically the VajraSpy, linked to the Patchwork APT campaign.
These apps, designed to target users primarily in Pakistan and India, have alarming capabilities. They can steal contacts, files, call records, text messages, and even access WhatsApp and Signal chats. Some apps record phone calls and intercept notifications. The most concerning aspect is their ability to capture photos of victims and record surrounding audio.
The cybercriminals behind these apps deploy a honey-trap or love-trap strategy, enticing victims with romantic interest to convince them to download the malicious apps.
On Google Play, the apps were downloaded 1,400 times before being removed. The listed apps on VirusTotal include YohooTalk, TikTalk, Hello Cha, Nidus, GlowChat, and Wave Chat. It is crucial for users to promptly delete these apps for their safety, even after removal from the official app store.
The research underscores the importance of exercising caution in online interactions and avoiding suspicious messaging apps to safeguard personal information and privacy.
Also Read: WhatsApp Boosts Experience: Share Original-Quality Photos, Videos
Among its components, secure messaging includes some of the most critical components, which are end-to-end encryption, synchronization across devices, and multi-mode messaging.
With end-to-end encryption, only negotiating sides can access the messages, as it is done in a completely private mode. Multiple-mode communication provides greater versatility because users can send SMS, videos, and audio messages via the platform. The availability of cross-support platforms enables synchronization of the messages sent using the mobile, web, and desktop interfaces with additional data privacy mechanisms.
Among the best secure messaging apps:
These apps prioritize user privacy, providing a secure messaging experience based on individual preferences and communication needs.
Related Article: Meta To End Cross-Platform Messaging: Instagram And Facebook Link Discontinued
most read
related stories
more stories from News
Walmart CEO emphasizes Walmart app usage in stores amidst a reevaluation of self-checkout systems. Learn more by reading the article!
ernest hamiltonOne UI 6.1.1 reportedly introduces exciting video AI features to Samsung devices. Explore the latest enhancements!
ernest hamiltonTencent is gearing up to launch the 'Dungeon and Fighter' mobile game in May, promising an exciting new gaming experience for fans of the franchise.
ernest hamiltonApple's latest software release confirms iPhone AI plans, unveiling eight small AI language models for on-device use, promising enhanced performance and privacy.
ernest hamiltonHMD introduces budget-friendly phones, all under $200, promising affordability without compromise.
ernest hamiltonExperience the latest Android 15 Beta 1.2! Pixel users, unlock additional bug fixes and enhancements now!
ernest hamiltonCheck out the latest from Glance! They're piloting their Android Lockscreen Platform in the US. Don't miss it!
ernest hamiltonExciting news! X plans to launch a Smart TV app for an immersive entertainment experience. Stay tuned!
ernest hamilton