Android Spyware Found Masquerading as Messaging Apps

03 Oct 2025

Researchers have identified two Android spyware families, ProSpy and ToSpy, cleverly disguised as popular messaging apps Signal and ToTok. These malicious campaigns, targeting residents of the United Arab Emirates, were revealed by cybersecurity firm ESET. Discovered in June, they reportedly have been active since the previous year.

Masquerading as Trusted Apps

ProSpy impersonates both Signal and ToTok, while ToSpy exclusively mimics ToTok. Despite ToTok's discontinuation in 2020 due to reports of use by the UAE government for surveillance purposes, these spyware applications present themselves as upgraded or enhanced versions, deceptively named ToTok Pro. This guise aims to lure users into granting device permissions, such as access to contacts, text messages, and stored files, which the spyware can then exploit to exfiltrate sensitive information.

Distribution Tactics

Neither ProSpy nor ToSpy is available through official app stores. Their creators rely on phishing tactics and third-party websites that pose as legitimate services for distribution. One such website even mimicked the Samsung Galaxy Store, enticing unsuspecting users to download a compromised version of ToTok.

This strategic manipulation of official-looking platforms further underscores the sophisticated measures deployed by these spyware developers. With confirmed detections within the UAE, along with the use of region-specific elements such as the domain extension ae.net and language preferences, the campaigns appear to be specially designed to target privacy-conscious individuals in the UAE.

Pattern of Malicious Messaging Apps

ESET's findings indicate these campaigns align with a broader pattern of employing fake messaging apps to distribute Android malware. Such tactics represent a growing challenge in digital security, as legitimate-looking applications increasingly become a means to infiltrate devices.

The discovery of these campaigns highlights the ongoing need for vigilance and the adoption of robust cybersecurity measures, particularly in regions where privacy is of heightened concern. Users are encouraged to download apps exclusively from trusted, official sources, and remain cautious of permissions granted to any application.

Top charts for Mobile Android

uTorrent

uTorrent

Latest update uTorrent download for free for Windows PC or Android mobile

5
1032 reviews
6448323
downloads
Zona

Zona

Latest update Zona download for free for Windows PC or Android mobile

4
614 reviews
1298255
downloads
WinRAR

WinRAR

Latest update WinRAR download for free for Windows PC or Android mobile

5
735 reviews
498795
downloads
Minecraft

Minecraft

Latest update Minecraft download for free for Windows PC or Android mobile

5
750 reviews
454620
downloads

News and reviews for Mobile Android

Launch Adds New WWM Codes for Echo Jades

Get free rewards with the new WWM launch codes. Unlock Echo Jades and items in the action-packed Wuxia game. Updates launched on 2025-11-11.

Read more

Find Hub Update: Distance Units, Device List Enhanced

Google's Find Hub update adds distance unit options and expands its compatible device list.

Read more

Explore 12 Essential Android Photography Apps for 2025

Explore top Android photography apps in 2025: SunSurveyor, Lightroom, more. Transform your phone into a powerful camera tool with these solutions.

Read more

Free Paid Apps Available on Android and iOS

Premium apps on Android and iOS are free temporarily. Available since 2025-11-11. Act fast to secure them before offers end.

Read more

Launch Wake Lock Metric on Google Play Set for 2026

Google targets apps with Wakelocks on Google Play by 2026, aims to improve battery performance.

Read more

Play Store v48.8 Enables Remote App Uninstall

Google Play Store's new v48.8 update lets users remotely uninstall apps on linked Android devices, enhancing security and convenience.

Read more

Google Revamps Android Song Search with Gemini-Inspired UI

Google updates song search on Android, unifying design with AI modes to improve user experience, rolling out gradually.

Read more

Google Adds Remote Uninstall Feature to Play Store

Google's Play Store update simplifies app removals for Android users through a new uninstall button.

Read more

Google Play Adds Rewards for Free Fire League Players

Google Play adds leaderboard rewards for Free Fire players until 2023-11-23.

Read more

Google Tightens Wake-lock Policy for Android Apps

Google is enforcing a stricter wake-lock policy for Android apps to curb battery drain. This will take effect on 2026-03-01 impacting Play Store visibility.

Read more