Cyber attackers have once again set their sights on Android devices in an attempt to deceive unsuspecting individuals into divulging personal and financial details.
Users are being advised to promptly uninstall compromised apps associated with a recent scam that involves hackers engaging in a sophisticated form of advertising fraud. By inundating apps with malicious advertisements, hackers can not only slow down the compromised devices but also profit from the scheme.
The latest assault, named ‘SlopAds’, was identified by the Satori Threat Intelligence and Research Team. Researchers discovered that 224 Android apps were impacted by this attack, collectively downloaded over 38 million times from the Google Play Store.
Security experts from the team disclosed that the SlopAds operation involved a network of 224 apps, downloaded more than 38 million times across 228 countries. These apps deploy steganography to conceal their fraudulent activities and create hidden WebViews to direct users to websites owned by the threat actors, generating fake ad impressions and clicks.
Google has successfully removed all problematic apps to prevent new users from falling prey to ad fraud. Individuals who may have unwittingly downloaded apps affected by the SlopAds bug will receive alerts prompting them to delete these apps.
To protect against future attacks, Android users are advised to activate Google’s Play Protect feature in the app store. This feature can identify potentially compromised applications before installation and block apps displaying behavior associated with SlopAds.
Ad fraud not only harms device users but also impacts legitimate advertisers and developers as hackers manipulate the system to run their infected ads. According to Google, ad fraud involves generating interactions to deceive ad networks into believing the traffic is from genuine user interest, leading to invalid traffic.
Android users are urged to act swiftly by deleting any flagged apps to safeguard their devices from potential threats.
