A new variant of SonicSpy was recently discovered on Google Play, one of over a thousand apps that have been tied to the malware family since February, according to researchers from Lookout published in a
blog post today.
The SonicSpy variant most recently found on the Google Play app store is called Soniac and is marketed as a messaging app. Although Soniac will perform some messaging functions, through the use of a customized version of Telegram, its author's intent is to hijack a user's Android phone. Some of Soniac's capabilities include silently recording audio, taking photos, making outbound calls, and sending text messages to phone numbers that the attacker specifies, according to Lookout.