Hundreds of malicious apps are lurking on the Android Play Store, and have already been downloaded by millions


We’ve all made the mistake of downloading some useless apps at one point or another, but there used to be a degree of certainty that the fake beer drinking app or the wild west sound effect buttons wouldn’t turn out to be spyware – as long as you got it directly from the App store. Well, new research from Zscaler says that might not be the case anymore.
Zscaler’s new ThreatLabz OT Threat Report has identified over 200 malicious apps available on the App store, which have already been downloaded by 8 million users so far. This comes with a 101% rise in spyware year-over-year, as well as a 29% increase in banking malware attacks.
This suggests that the motives for the attacks remain primarily financial, as banking malware allows threat actors to steal your credentials not just to use themselves, but also to sell on to other criminals.
More than a few bad apples
The targets of these attacks mirror research on other types of cyberattack, with the education, technology, and manufacturing sectors experiencing the most incidents. Education proves once again to be attractive to cybercriminals, and saw a 136% increase in attacks in the last year.
As more and more of us work from home, we introduce more software to enable us to connect or for productivity in hybrid environments, but these open the landscape up for threat actors to exploit.
“Cybercriminals are increasingly targeting legacy exposed assets which often act as a beachhead to IoT & OT environments, resulting in data breaches and ransomware attacks,” said Deepen Desai, Chief Security Officer at Zscaler.
“Mobile malware and AI driven vishing attacks adds to that list making it critical for CISOs and CIOs to prioritize an AI powered zero trust solution to shut down attack vectors of all kinds safeguarding against these attacks.”
Sign up to the TechRadar Pro newsletter to get all the top news, opinion, features and guidance your business needs to succeed!
These are not the first reports of infected apps even from the official Play store, so we recommend checking reviews, number of downloads, and ratings when looking for something new.
More from TechRadar Pro
We’ve all made the mistake of downloading some useless apps at one point or another, but there used to be a degree of certainty that the fake beer drinking app or the wild west sound effect buttons wouldn’t turn out to be spyware – as long as you got it…
Recent Posts
- Everything missing from the iPhone 16e, including MagSafe and Photographic Styles
- Reddit is reportedly experiencing some outages
- Google may be close to launching YouTube Premium Lite
- Someone wants to sell you a digital version of the antiquated typewriter but without a glued-on keyboard (no really)
- Carbon removal is the next big fossil fuel boom, oil company says
Archives
- February 2025
- January 2025
- December 2024
- November 2024
- October 2024
- September 2024
- August 2024
- July 2024
- June 2024
- May 2024
- April 2024
- March 2024
- February 2024
- January 2024
- December 2023
- November 2023
- October 2023
- September 2023
- August 2023
- July 2023
- June 2023
- May 2023
- April 2023
- March 2023
- February 2023
- January 2023
- December 2022
- November 2022
- October 2022
- September 2022
- August 2022
- July 2022
- June 2022
- May 2022
- April 2022
- March 2022
- February 2022
- January 2022
- December 2021
- November 2021
- October 2021
- September 2021
- August 2021
- July 2021
- June 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- December 2020
- November 2020
- October 2020
- September 2020
- August 2020
- July 2020
- June 2020
- May 2020
- April 2020
- March 2020
- February 2020
- January 2020
- December 2019
- November 2019
- September 2018
- October 2017
- December 2011
- August 2010