The Indian Cyber Crime Coordination Centre (I4C), part of the Union home ministry, has issued a warning about a rise in malicious Android applications that disguise themselves as pornography apps. Cybercriminals are using these apps to gain unauthorized access to users’ mobile phones, leading to potentially fraudulent financial transactions. Users are advised to be cautious and vigilant when downloading apps from unverified sources.
New Malware Targets Device Permissions and User Data
A recently identified malicious application seeks sensitive permissions from users, notably Accessibility access. Once these permissions are granted, the malware can take control of the device and operate in the background.
In addition to this, the malware may download a secondary application, disguising it as an update to the original app. Some instances have also involved the installation of a virtual private network (VPN), which routes the user’s internet traffic through servers controlled by the attackers. This could lead to the exposure of sensitive data, raising significant security concerns.
Steps to Safeguard Your Device from Malicious Apps
Recent advisories highlight the risks posed by certain applications that may hinder users from uninstalling them through standard device settings. To mitigate these threats, users are urged to avoid granting Accessibility permissions to apps they do not recognize.
Regularly reviewing installed applications is crucial. Users should remove any unfamiliar apps and ensure Google Play Protect is activated while keeping their Android operating system up to date.
For devices suspected to be compromised, it is recommended to restart the phone in Safe Mode to uninstall suspicious applications. Additionally, users should disable Accessibility access and revoke device administrator privileges from any malicious apps.
If an app cannot be removed or reappears after a restart, backing up important data and performing a factory reset may be necessary.

