Fraudulent Photo App Operation Detected on Google Store

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,154
Researchers have exposed a malicious cyber-operation involving fraudulent photo-editing apps, none of which were found to function as advertised.

New research published today by White Ops’ Satori threat intelligence team revealed 29 fraudulent apps to be part of a nefarious cyber-scheme that they have named Chartreuse Blur.

The apps, which have already been downloaded 3.5 million times from the Google Play Store, cause out-of-context (OOC) ads to run rampant on a compromised device and randomly open web browsers while the device is in use.

Researchers noted that any time a compromised device is unlocked, plugged into a charger, or even switches cellular networks, an OOC ad pops up on the home screen, whether the fraudulent app is open or not. [...]

One of the apps exposed by researchers, the Square Photo Blur app, has since been removed from the Google Play Store.
 

jetman

Level 10
Verified
Well-known
Jun 6, 2017
473

silversurfer

Level 85
Thread author
Verified
Honorary Member
Top Poster
Content Creator
Malware Hunter
Well-known
Aug 17, 2014
10,154
Apps with very similar names remain in the Play Store... are these Square Blue Photo under a different guise ?
Researchers wrote about remaining "blur apps" the following below:
"All of the apps in this investigation feature developers whose “names” are common English language names smashed together, seemingly at random."
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top