Quote:Security researchers discovered a new Android Trojan with malware dropper and spyware capabilities in 24 Google Play Store apps with more than 472,000 downloads in total.
The new Android malware dubbed 'Joker' is hidden within advertisement frameworks used by the compromised apps — some with over 100,000 installs — and it is designed to download a second-stage component as a DEX file that adds more capabilities.
This additional malicious component which simulates user interaction on ad sites, and will also harvest its victims' device info, contact list, and text messages.
"The automated interaction with the advertisement websites includes simulation of clicks and entering of the authorization codes for premium service subscriptions," as CSIS Security Group recently found.
Read more here: https://www.bleepingcomputer.com/news/se...criptions/