Android is an operating system in which it is relatively easy to develop, which may be a point in favor of the possibilities with mobiles with this OS, but it is also a security sieve in which many applications manage to reach their digital store infected .
The case that we are telling you today is that of Joker, which has been found hidden in 15 apparently legitimate applications that add up to more than 100,000 downloads between them.
The dangerous Joker malware
Joker malware, also known as Bread, is included as malware within the fleeceware category, as its main malicious activity consists of unwanted subscription to paid services or sending SMS or making calls to premium numbers. But it also has other capabilities, such as adding an extra layer on top of legitimate apps to steal credit card information.
Because it uses a very basic amount of code, which can also be completely hidden, this malware is found hidden in applications with apparently legitimate features, such as translators or heart pressure monitors. In the last three years, the malware was found hidden in thousands of applications, so more than 100,000 users who have downloaded some of them separately could be at risk.
Hidden in Google Play Store apps
As we said, Joker’s infection code is so subtle and reduced that it manages to overcome the security filters of the Google Play Store, with new applications appearing periodically without Google being able to prevent it. According to Pradeoa major mobile security company, its analyzes have detected traces of Joker in applications of all kinds.
The most recent cases include two SMS short message managers, additional keyboards, emoji packs, wallpapers and even supposed security applications. The security company has detected these applications in the Google Play Store, and sometimes they already had tens of thousands of downloads. As Google informs these malicious apps, all of them have already been removed from the app store.
If you want to confirm that you did not install any of them when they were still available, here is the list of the 36 apps with Joker that have been detected between Pradeo and ESET:
- Smart SMS Messages
- Blood PressureMonitor
- Voice Languages ​​Translator
- Quick Text SMS
- Beautiful Theme Keyboard
- All Wallpaper Messenger
- Angina Reports
- Moon Horoscope
- ColorMessage
- SafetyApplock
- ConvenientScanner 2
- Push Message-Texting & SMS
- Emoji Wallpapers
- Separate Doc Scanner
- Fingertip GameBox
- Squid Game Wallpaper 4K HD
- All QRCode Scanner
- PDF Scanner Reader
- Wow Translator
- Rainy Day Wallpaper
- Neon Live Wallpaper
- Plenty Emoji Messages
- Cute Photo Editor
- All Wallpaper SMS
- All Photo Translator
- Smart CMM Launcher
- CamHipro
- Cool Messages
- Sketch Photo Editor
- Blood Sugar Log
- BubbleMessage
- Create Photo Stickers
- Shining Live Wallpaper
- Toy Blast Star-Falcon
- RGB Emoji Keyboard
- Camera Translator Pro