Categories: NewsTech

Warning: New version of “Joker” spyware hiding in Google Play applications

Despite various security measures such as Google Play Protect, it appears that Android’s malware issue hasn’t really been fixed yet. We recently covered the news that 25 apps from Google Play contained malware that stole your Facebook login credentials—and now, a new report has found a new variant of the “Joker” spyware loitering in apps found on Google Play.

According to a report from security researchers over at Check Point, the spyware has been found in “seemingly legitimate” apps for Android devices. But what’s even more worrying is that the new Joker malware has the capabilities to download more malware onto your smartphone, while the spyware also subscribes to paid, premium services (without your knowledge).

Who/what is the Joker?

The Joker malware (not the supervillian) has reportedly caused over 17,000 offending apps to be removed from Google’s Play Store to date. Despite its infamy, the malware has repeatedly been found within apps listed due to small alterations to its code by attackers to avoid detection. Researchers also found that attackers hid a “dynamically loaded dex file” to dupe security safeguards.

This, according to the researchers, is “one of the most prominent types of malware” for Android users, but the new variant uses a technique borrowed from conventional PC threats to avoid detection. Regardless, for regular users of smartphones, it’s certainly worrying to know that an online store that is as reputable as the Google Play Store can be compromised with offensive apps such as these—and semi-regularly, too.

What should you do to stay safe?

The report doesn’t specifically list down the apps that are infected, although the researchers published a list of 11 offending packages that were discovered:

Based on the package names, you can tell that the infected apps span across various types of apps—most of which probably appear to be totally harmless. There are photo editing apps, relaxation apps, along with software that helps you recover lost/deleted files and wallpaper apps.

You should also be wary of any subscriptions to premium services that you have not consented to via your credit card (or other payment channels). While it may be a little difficult to actually get your money back, this will prevent you from being continually (and fraudulently) charged.

Unfortunately, the vast variety of Android apps on the Google Play Store isn’t free from malware issues, despite security safeguards being put in place by the search engine giants. Regardless, you should always be careful when you download apps from unknown developers. If you must, remember to go through the reviews section of individual apps before downloading, and try to stick to reputable app publishers/developers.

To read the full Check Point report, click here.

[ SOURCE , IMAGE SOURCE ]

Related reading

Recent Posts

LRT3 Shah Alam Line to be opened to the public on 29 June

LRT3 Shah Alam Line is set to be operational on Monday, 29 June. The opening…

2 hours ago

Nothing cancels CMF Phone successor, hints at affordable Phone (4b) instead

It's over a year since the CMF Phone 2 Pro was launched and some are…

6 hours ago

CIMB offers first-time car buyers free road tax and up to RM1,200 annual petrol cashback

CIMB Bank Berhad (CIMB) has introduced what it described as the first-of-its-kind First Car solution…

10 hours ago

Tesla prices to go up from July due to MITI’s CBU EV rules?

Tesla Malaysia has managed to keep its vehicle prices unchanged despite the end of the…

1 day ago

Malaysia’s subsidised diesel price drops to RM2.10/L from July 2026

The Malaysian government has announced that subsidised diesel for eligible Malaysians will be reduced to…

1 day ago

Rapid KL offers non-Malaysians unlimited ride pass for RM150 per month via TNG eWallet

Rapid KL is now making its monthly unlimited ride pass accessible to more users. Besides…

2 days ago

This website uses cookies.