Judy Malware Affected Up to 36.5 Million Android Users via Google Play, Says Check Point

Advertisement
By Ketan Pratap | Updated: 29 May 2017 16:39 IST
Highlights
  • Check Point reported over 41 apps with auto-clicking adware
  • Google has removed the malicious apps from Play store
  • Researchers claim malware has infected 36.5 million devices

Researchers at Check Point, which recently reported malicious subtitles, have now reported a new malware campaign on Google Play. Dubbed 'Judy', the auto-clicking adware was found on 41 apps developed by a Korean company, according to researchers.

The malware used infected devices to generate fraudulent clicks on advertisements for generating revenues. Researchers claim that the 'Judy' malware has affected between 8.5 million and 36.5 million Android devices as the malicious apps saw downloads between 4.5 million and 18.5 million. Notably, Google removed the malicious apps from the Google Play store after Check Point notified it about the threat.

Advertisement

"Some of the apps we discovered resided on Google Play for several years, but all were recently updated. It is unclear how long the malicious code existed inside the apps, hence the actual spread of the malware remains unknown," writes Check Point team talking about the Judy malware.

Researchers also found several apps containing Judy malware developed by other developers on Google Play. Though, any connection between the two malware campaigns couldn't be established. "The connection between the two campaigns remains unclear, and it is possible that one borrowed code from the other, knowingly or unknowingly," adds the team.

Advertisement

Check Point reported that the oldest app in the second campaign from other developers were last updated in April 2016 which means that the "malicious code hid for a long time on the Play store undetected."

Researchers also add that similar to previously reported malicious apps like FalseGuide, Judy also relies on the communication with its Command and Control server (C&C) for its operation.

Advertisement

Check Point last month reported FalseGuide botnet malware which infected millions of Android devices via Google Play, and which was hidden in over 40 guide apps for games in Google Play.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Oppo Find X10 Pro Max Among First Phones to Launch With 2nm Dimensity 9600 Pro
  2. Redmi Note 17 Pro Series With Up to 10,000mAh Battery Debuts in India
  3. Vivo V80 India Launch Officially Confirmed, Design Teased
  1. Ethereum Wallet Exploit Drains $7.8 Million in rsETH Tokens, Security Firms Warn
  2. Vivo Buds Clip Launch Date Confirmed for September 21, Colour Options Revealed
  3. Oppo Find X10 Pro Max to Be Among First Phones With MediaTek's 2nm Dimensity 9600 Pro Chip
  4. Delta Exchange Lands Global Sponsor Slot for India-Afghanistan T20I Series
  5. Apple iCloud+ Plans in India Now Include Apple TV and Arcade at No Extra Cost
  6. Googlebook Laptops to Open for Pre-Orders on September 21, Google Confirms
  7. CoinEx Set to Close Exchange After Almost Nine Years in Operation
  8. iQOO 16 Launch Date Confirmed for September 29 in China, Three Colours Revealed
  9. Mac Mini M6 Geekbench Listing Reportedly Reveals Performance Gains Over M5 Chip
  10. Vivo V80, S2 FE Reportedly Get BIS Certification Hinting at Imminent India Launch; X500 Pro Max Appears on NBTC
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.