Necro Trojan Compromises 11 Million Android Devices Worldwide

24 Sep 2024

The Evolution of Necro

In 2019, cybersecurity experts unearthed a seemingly legitimate Android application on the Google Play Store that had been subtly undermined by an ad library implemented by its developers. This breach led to a staggering 100 million devices falling victim to the malware. Fast forward five years, and Kaspersky has reported the return of the Necro Trojan, now affecting around 11 million Android users worldwide. This latest iteration has evolved, boasting new features and infiltration techniques that render it more adaptable, elusive, and potentially more hazardous than its predecessor.

The malware primarily disseminates through unverified ad integration tools employed by app developers, unofficial app sources, and modified versions of widely-used applications. Alarmingly, it has even infiltrated the Google Play Store, affecting apps like Wuta Camera and Max Browser.

Key Differences in the New Version

This reincarnation of the Necro Trojan exhibits several notable distinctions from its original form. It employs sophisticated obfuscation techniques to evade detection, with its malicious payload cleverly concealed within innocuous-looking PNG images. Moreover, various malicious modules can be combined for diverse actions on compromised devices.

While the original version infiltrated apps through an unverified ad integration tool, the new variant is believed to exploit a malicious software development kit designed for ad integration. This time, the Necro Trojan has successfully infiltrated multiple applications on Google Play, including:

  • Wuta Camera – 10 million downloads
  • Max Browser – 1 million downloads
  • Modded versions of Spotify
  • Unofficial mods for WhatsApp, Minecraft, Stumble Guys, Car Parking Multiplayer, and Melon Sandbox

In 2019, Kaspersky identified the malware within CamScanner, a text recognition app that had amassed over 100 million downloads on Google Play.

Malicious Capabilities

Once activated, the Necro Trojan possesses a range of malicious capabilities, including:

  • Downloading and executing DEX files
  • Installing additional applications
  • Tunneling through the victim’s device to facilitate the routing of malicious traffic or circumventing network security
  • Subscribing to paid services without user consent
  • Interacting with ads in invisible windows to generate fraudulent ad revenue for the attackers
  • Opening arbitrary links to execute JavaScript code
  • Uploading user data to attacker-controlled servers
  • Downloading malicious code with elevated system privileges

Precautionary Measures

To safeguard against the Necro Trojan, users are encouraged to adopt some straightforward yet effective precautions:

  1. Avoid downloading apps from unofficial sources.
  2. Exercise caution even with applications sourced from official platforms.
  3. Steer clear of modded or hacked versions of apps.
  4. Utilize reputable mobile security software for added protection.

The resurgence of the Necro Trojan serves as a stark reminder of the persistent threat posed by mobile malware, having already compromised 11 million devices globally. This situation underscores the critical need for users to exercise caution when downloading and utilizing mobile applications. With Necro now active, vigilance is paramount, particularly regarding modified versions of popular apps. Users are advised to meticulously verify the source and permissions of any application prior to installation.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
5294196
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
915206
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
429989
downloads
Geometry Dash

Geometry Dash

Latest update Geometry Dash download for free for Windows PC or Android mobile

4
539 reviews
342673
downloads

News and reviews for Mobile Android

XChat Expands Features to Rival Major Messaging Apps

XChat, led by Elon Musk, enhances messaging with encryption, file sharing and more to challenge WhatsApp and iMessage.

Read more

Red Ronin Leads Top Android Game Discounts This Week

Red Ronin, a tactical turn-based game, is featured among top discounted deals on Google Play. Highlights include significant discounts on Galaxy Watch 7 and more.

Read more

Device Security Alert: Concerns Over Android Vulnerabilities

Significant security vulnerabilities in Android phones from Ulefone and Krüger&Matz have been identified by CERT Polska, risking user data. Prompt updates are advised.

Read more

Gmail Embraces Material 3 Design with Latest Android Update

Gmail's latest update unveils a Material 3-inspired UI, following the Android 16 design framework. The card-based changes include a fresh interface with a revised 'Compose' feature and search bar, aiming to bring consistency to Google's app ecosystem.

Read more

New Google App Brings AI Models to Android Devices

Google has unveiled an Android app enabling local use of AI models without internet, including interactive features and image analysis.

Read more

Gemini Introduces Email Summary Cards to Gmail on Mobile

Gemini launches new summary cards for Gmail on Android and iOS. These AI-powered tools offer automatic updates at the top of emails, assisting users in managing long threads effectively. Smart features must be enabled for full functionality.

Read more

Google Photos Enhances Experience with New Features

Marking its 10th anniversary, Google Photos introduces updated editing, AI, and sharing features to enhance user experience.

Read more

Google Enhances Android Phone App for Better User Experience

Google is preparing to release updates to the Android Phone app, improving readability and enhancing the user experience with new design elements.

Read more

Kiosk Software Enhances Business Operations and Security

Kiosk software streamlines business operations by optimizing Android devices for specific tasks. Leading software providers like Scalefusion and KioWare offer crucial features that enhance efficiency and ensure security, making these tools essential for many industries.

Read more

Auto-rotation Innovations Enhance Android Experience

Samsung's One UI and MacroDroid enhance Android's auto-rotation, enabling users to tailor screen rotation for specific apps effortlessly.

Read more