QR code reader apps hit by malware on Google Play Store


  • TECH
  • Tuesday, 27 Mar 2018

The malware in the QR code readers reportedly bypassed Google

Hundreds of thousands of Android users fell victim to malware embedded in QR code apps. According to researchers at SophosLab, the malware called Andr/HiddnAd-AJ was found in seven apps of which six were QR code reader apps and one was a smart compass app.

Although Google has already removed these apps from the Google Play Store, it was not before they were downloaded more than 500,000 times.

“The adware part of each app was embedded in what looks at first sight like a standard Android programming library that was itself embedded in the app.

“By adding an innocent-looking ‘graphics’ subcomponent to a collection of programming routines that you’d expect to find in a regular Android program, the adware engine inside the app is effectively hiding in plain sight,” said the report.

Despite the malware, the apps still worked. The QR code readers, for instance, could still scan QR codes. So if a user was just trying out apps for fun and deleted it soon after, he or she won’t be exposed to the malware as it only kicked in six hours after the installation.

Users unlucky enough to continue using it were avalanched by adware that filled the entire screen and when they opened the web browser.

“For all its apparent innocence, however, this malware not only pops up ads, but can also send Android notifications, including clickable links to lure users into generating ad revenue for criminals,” the report stated.

Despite the hiccup, Sophos advises users to stick to Google Play as the company does at least carry out some pre-acceptance checks for apps and games.

“Many off-market Android app repositories have no checks at all – they’re open to anyone, which can be handy if you’re looking for unusual or highly specialised apps that wouldn’t make it onto Google Play. But unregulated app repositories are also risky, for all the same reasons,” it stated.

The Star Festive Promo: Get 35% OFF Digital Access

Monthly Plan

RM 13.90/month

Best Value

Annual Plan

RM 12.33/month

RM 8.02/month

Billed as RM 96.20 for the 1st year, RM 148 thereafter.

Follow us on our official WhatsApp channel for breaking news alerts and key updates!

Next In Tech News

Anthropic buys Super Bowl ads to slap OpenAI for selling ads in ChatGPT
Chatbot Chucky: Parents told to keep kids away from talking AI dolls
South Korean crypto firm accidentally sends $44 billion in bitcoins to users
Opinion: Chinese AI videos used to look fake. Now they look like money
Anthropic mocks ChatGPT ads in Super Bowl spot, vows Claude will stay ad-free
Tesla 2.0: What customers think of Model S demise, Optimus robot rise
Vista Equity Partners and Intel to lead investment in AI chip startup SambaNova, sources say
Apple plans to allow external voice-controlled AI chatbots in CarPlay, Bloomberg News reports
Goldman Sachs teams up with Anthropic to automate banking tasks with AI agents, CNBC reports
US Justice Department casts wide net on Netflix's business practices in merger probe, WSJ reports

Others Also Read