en

Large-Scale Fraudulent Operations on Android

Large-Scale Fraudulent Operations on Android
Datami Newsroom
Datami Newsroom Datami Newsroom
Aug 22, 2025 3 min

According to recent data, applications were discovered that loaded out-of-context ads onto users’ screens, making them difficult to remove.

Google has already removed these applications from the Play Store; however, at the peak of the malware’s activity, the number of requests exceeded 1.2 billion per day. Most of the infected applications linked to the IconAds campaign were distributed in Brazil, Mexico, and the United States. Some of them disguised themselves as Google Play or Google services to mislead users.

Although the applications have already been blocked, experts expect new variations of this threat in the near future.

Other schemes were also discovered in parallel. One of them was named Kaleidoscope. As part of this attack, attackers created two versions of the same application: a legitimate one for Google Play and a malicious copy for third-party sources. The malicious version launched intrusive ads and generated profit for fraudsters through fake impressions. This scheme was most widespread in Latin America, Turkey, Egypt, and India between December 2024 and May 2025. A significant part of the financial benefit from these attacks was associated with the company Saturn, which offers tools for ad and video monetization.

Illustration of data theft through malicious mobile applications.

Another dangerous trend was the use of NFC technology in the malicious applications NGate and SuperCard X. Through infected smartphones, attackers were able to transmit victims’ bank card signals and thus withdraw money remotely. In addition, the Qwizzserial campaign became more active, distributing fake banking applications through Telegram by disguising them as government services. As a result of this malware, two-factor authentication codes, banking data, and other confidential information were stolen, causing damages of tens of thousands of dollars.

The scale of these attacks indicates that cybersecurity today must be an integral part of the activities of any company and every user. Regular checks of digital protection are a critical condition for countering malware and ensuring data security.

free_consultation

Fill out the form below, and we’ll get in touch with you right away to discuss a plan to protect your business!

Updated: 22.08.2025
(0 assessments, average 0/5.0)

Related content

TOP 5 Largest Cryptocurrency Hacks in History Datami Newsroom
Datami Newsroom

TOP 5 Largest Cryptocurrency Hacks in History

The cryptocurrency industry is still in its formative stage, and its highly complex technologies are not always adequately protected. In addition, inexperienced users often make serious mistakes in securing their assets. This creates various opportunities

Jun 3, 2025 4 min
Datami at the Barcelona Cybersecurity Congress 2025: New Horizons in Cybersecurity Datami Newsroom
Datami Newsroom

Datami at the Barcelona Cybersecurity Congress 2025: New Horizons in Cybersecurity

Datami took part in the Barcelona Cybersecurity Congress 2025, one of Europe’s key events dedicated to cybersecurity innovations and technologies.

Jun 3, 2025
Top 10 Cyberattacks That Brought Global Corporations to a Halt Datami Newsroom
Datami Newsroom

Top 10 Cyberattacks That Brought Global Corporations to a Halt

Cyberattacks today pose a serious threat not only to individual users but also to global corporations. Criminals use increasingly sophisticated methods, causing companies billions in losses and disrupting the operation of critical systems.

Jun 17, 2025 3 min
Antivirus Is Not a Shield: Why You Can’t Do Without Pentesting Datami Newsroom
Datami Newsroom

Antivirus Is Not a Shield: Why You Can’t Do Without Pentesting

Among companies, there is a common belief that installing antivirus software provides a sufficient level of security. This stems from the popularity of antivirus solutions, which are an important part of protection, but do not cover all threats.

Jun 23, 2025 3 min
Over 480,000 Catholic Health Patients Affected by Personal Data Breach Datami Newsroom
Datami Newsroom

Over 480,000 Catholic Health Patients Affected by Personal Data Breach

The Catholic Health network, which provides medical services to residents of Western New York (USA), has reported a major data breach. As a result, confidential information about 483,000 patients was exposed and became publicly accessible on the internet.

Jun 3, 2025 3 min
Why Your Smartphone Is at Risk: 5 Common Myths About Mobile Security Datami Newsroom
Datami Newsroom

Why Your Smartphone Is at Risk: 5 Common Myths About Mobile Security

Most of us take careful care of our smartphones, protecting them from scratches, drops, or other physical damage. But when it comes to digital security, many people ignore potential threats. Cybercriminals eagerly take advantage of this negligence...

Jun 3, 2025 5 min
Back to home page
Order a free consultation
We value your privacy
We use cookies to enhance your browsing experience, serve personalized ads or content, and analyze our traffic. By clicking "Accept All", you consent to our use of cookies. Cookie policy