in ,

If These ‘Very Dangerous’ Apps Are On Your Phone, Delete Them Now

A serious new warning this week, with Android users urged to check their phones for a set of very dangerous apps, which not only steal personal data but can even record phone calls. If you have any of these installed, delete them immediately.

This is just the latest such warning into malicious apps on both Google’s Play Store and the patchy collective of “user beware” third-party Android app stores.

The VajraSpy remote access trojan (RAT) was identified by the research team at ESET, which has named “twelve Android espionage apps that share the same malicious code,” six of which “were available on Google Play,” despite its defenses.

MORE FROM FORBESGoogle Suddenly Issues Update Warning For Samsung Galaxy Users

ESET attributes the RAT to the Patchwork APT group in Asia. The apps, the team says, “were advertised as messaging tools apart from one that posed as a news app—VajraSpy has a range of espionage functionalities that can be expanded based on the permissions granted to the app bundled with its code. It steals contacts, files, call logs, and SMS messages, but some of its implementations can even extract WhatsApp and Signal messages, record phone calls, and take pictures.”

While there were very few installs from the Play Store, mostly confined to Asia, it’s not known how many apps were downloaded from third-party stores. Google’s official store is much more secure than the alternatives, but the fact these apps sneaked onto the Play Store in the first place will be a cause for alarm.

These apps appear to have been more targeted than other recent malware warnings. Users were sent links through chat apps, often under the guise of online romance. But the apps have also been available on stores for anyone to install.

Other malware-laced apps disclosed recently have been downloaded millions of times. The complete list of dangerous apps can be found below.

This is the third such Android warning in recent weeks, following the SpyLoan and Xamalicious reports. And this one coincides with the current headlines on app store security. Apple has repeatedly pushed back on opening its own ecosystem to third-party stores for security reasons. It is now being forced to do so by way of Europe’s Digital Markets Act (DMA). Stories such as this will not provide much comfort.

Users should check for SpyLoan and Xamalicious apps as well as VajraSpy, all of which are detailed below. They should also look for any so-called “copycat apps” hiding on their phones. Even though all these apps have been removed from the Play Store, some are still available in the wild and won’t have been automatically deleted.

VajraSpy:

  1. Hello Chat
  2. Chit Chat
  3. Meet Me
  4. Nidus
  5. Rafaqat News
  6. Tik Talk
  7. Wave Chat
  8. Prive Talk
  9. Glow Glow
  10. Lets Chat
  11. NioNio
  12. Quick Chat
  13. Yoho Talk

Xamalicious:

  1. Essential Horoscope for Android
  2. 3D Skin Editor for PE Minecraft
  3. Logo Maker Pro
  4. Auto Click Repeater
  5. Count Easy Calorie Calculator
  6. Sound Volume Extender
  7. LetterLink
  8. Numerology: Personal Horoscope & Number Predictions
  9. Step Keeper: Easy Pedometer
  10. Track Your Sleep
  11. Sound Volume Booster
  12. Astrological Navigator: Daily Horoscope & Tarot
  13. Universal Calculator

SpyLoan:

  1. AA Kredit
  2. Amor Cash
  3. GuayabaCash
  4. EasyCredit
  5. Cashwow
  6. CrediBus
  7. FlashLoan
  8. PréstamosCrédito
  9. Préstamos De Crédito-YumiCash
  10. Go Crédito
  11. Instantáneo Préstamo
  12. Cartera grande
  13. Rápido Crédito
  14. Finupp Lending
  15. 4S Cash
  16. TrueNaira
  17. EasyCash

As I have said repeatedly, the dangers of sideloading will be much debated through 2024, ahead of Apple’s changes in iOS 17 updates and then iOS 18 in the fall.

When Apple does begin to move beyond its App Store exclusivity, I suspect we will see much more focus on the vulnerabilities in the Android ecosystem, where the right balance between choice and risk is proving impossible to find.

MORE FROM FORBESNew Google Release Exposes AI Upgrade For Messages Users

In addition to being wary of unofficial app stores, ESET strongly advises against installing apps via links sent through chat apps. “Cybercriminals wield social engineering as a powerful weapon. We strongly recommend against clicking any links to download an application that are sent in a chat conversation.”

I would go further and advise against casual downloads of any apps onto your phone, unless you have confidence in their provenance and their developer. Once installed—and given rife permission abuse, apps can potentially access everything on your device, the key to your private life.

Meanwhile, check your phone for the 40+ apps above, and maybe start to delete the casual apps you’ve collected over the years and no longer use. It’s good practice, especially at the moment, and you’d be well advised to do some housekeeping.

This post was created with our nice and easy submission form. Create your post!

What do you think?

Engineering Vs. Discovery: What’s The Difference? More From Jeremy Wertheimer

Engineering Vs. Discovery: What’s The Difference? More From Jeremy Wertheimer

‘Potentially Hazardous’ Asteroid Passes Earth Today: How To See It

‘Potentially Hazardous’ Asteroid Passes Earth Today: How To See It