Monitor this situation.
Unsubscribe anytime.
[SITUATION] · [QUIET] · [TECHNOLOGY]
2 clusters · 7 sources · 9 days · First seen · Last updated
Google Play Early Access exploitation by malicious apps
Overview
Security researchers have identified a trend where cybercriminals exploit the Google Play Early Access program to distribute malicious and deceptive applications. Because this program allows developers to test unfinished software, it lacks the public ratings and user reviews that typically help users identify fraudulent content.
Initial reports from Bitdefender highlighted thousands of suspicious apps, including fake casino games, reward-based apps that fail to pay out, and utilities like QR scanners that request excessive permissions. Attackers have also used high-profile names to intercept searches, such as apps titled ‘Grand Theft Auto V (Early Access)’ that rename themselves after gaining downloads. These apps are often promoted via social media using AI-generated deepfakes of celebrities to build false trust.
Subsequent findings identified a specific campaign known as SilkParasite, which utilizes the Early Access feature to bypass public warning systems. Researchers noted a connection to China regarding these activities. Additionally, the scope of deceptive software on the platform has expanded to include counterfeit versions of the Huawei Health application, which use official icons to deceive users seeking wearable software.
Entities
Google Play · Bitdefender · Google · Huawei · SilkParasite
Timeline
-
8 days ago
[TECHNOLOGY] 2 sourcesGoogle Play targeted by fraudulent apps and Early Access exploitsCybercriminals are exploiting Google Play’s Early Access program and using counterfeit Huawei Health apps to distribute fraud and malware, bypassing public review systems to target unsuspecting users.
-
16 days ago
[TECHNOLOGY] 5 sourcesGoogle Play Early Access exploited by malicious app developersBitdefender warns that scammers are using Google Play’s Early Access program to distribute fraudulent apps, exploiting the lack of public reviews to bypass user scrutiny and spread malicious software.
Sources
ad-hoc-news.de · b2b-cyber-security.de · batista70phone.com · csoonline.com.au · generation-nt.com · silicon.es · tuttoandroid.net