Newsbytes
  • India
  • Business
  • World
  • Politics
  • Sports
  • Science
  • Entertainment
  • Auto
  • Lifestyle
  • Inspirational
  • Career
  • Bengaluru
  • Delhi
  • Mumbai
  • Videos
  • Phone Reviews
  • Find Cricket Statistics
Hindi
More
Newsbytes
Hindi
Newsbytes
User Placeholder

Hi,

Logout


India
Business
World
Politics
Sports
Science
Entertainment
Auto
Lifestyle
Inspirational
Career
Bengaluru
Delhi
Mumbai
Videos
Phone Reviews
Find Cricket Statistics

More Links
  • Videos

Download Android App

Follow us on
  • Facebook
  • Twitter
  • Linkedin
  • Youtube
 
Home / News / Science News / #MalwareAlert: Fake Netflix-like app spreads malware via WhatsApp
  • Science

    #MalwareAlert: Fake Netflix-like app spreads malware via WhatsApp

    Abid Iqbal Shaik
    Written by
    Abid Iqbal Shaik
    Mail
    Last updated on Apr 08, 2021, 06:16 pm
    #MalwareAlert: Fake Netflix-like app spreads malware via WhatsApp
  • Check Point Research (CPR) discovered a new malware on the Google Play Store that was disguised as "FlixOnline."

    It claims to offer users two months of free access to Netflix content from all around the world.

    However, the app was designed to monitor the user's WhatsApp messages, reply to texts with malicious content, and steal login and financial details.

  • In this article
    Google has taken down the malware from the Play Store App requests three permissions to compromise your device The fake app hides its icon making uninstalling it harder It can monitor and steal your data and spread malware The malware could make a comeback in other apps
  • First step

    Google has taken down the malware from the Play Store

    Google has taken down the malware from the Play Store
  • When CPR notified Google about the malware, it was quickly removed from the Play Store. However, the app was downloaded 500 times within two months when it was available on the platform.

    While the fake app was taken down immediately, the fact that it bypassed Google's security measures and landed on the Play Store raises red flag about the company's ability to protect users.

  • Remote control

    App requests three permissions to compromise your device

    App requests three permissions to compromise your device
  • Once the app is installed, it requests the user to grant three permissions: "Notification Listener," "Overlay," and "Battery Optimization Ignore."

    The first service allows the malware to access notifications, reply to messages, and dismiss alerts.

    Access to the second permission provides it with the ability to draw new windows over other applications.

    The third service keeps the malware running even when the phone is dormant.

  • Clever tricks

    The fake app hides its icon making uninstalling it harder

    The fake app hides its icon making uninstalling it harder
  • Once you grant permissions, the malware displays a landing page that it receives from the command and control (C&C) server and hides its icon so that users can't uninstall the app easily.

    The malware then continues to communicate with the C&C server to receive instructions.

    According to CPR, the fake app has been designed with a focus on WhatsApp.

  • Data theft

    It can monitor and steal your data and spread malware

    It can monitor and steal your data and spread malware
  • Although such behavior hasn't been observed, the malware can potentially steal your WhatsApp data and take the ransom route by threatening to send sensitive content to your contacts.

    Since it can also reply to your messages, it propagates by sending malicious links to WhatsApp contacts.

    With its ability to draw over other apps, it can monitor and steal login data and financial information.

  • Possible revisit

    The malware could make a comeback in other apps

    The malware could make a comeback in other apps
  • According to CPR, the malware could make a comeback disguised as other applications. Therefore, try to avoid apps that advertise such lucrative offers and keep yourself away from apps that are not popular on the platform.

    If you were a victim of the FlexOnline app, we recommend uninstalling the app immediately and changing your passwords.

  • WhatsApp
  • Netflix
  • Google PlayStore
  •  
Latest News
  • 'Money Heist 5': Did Pedro Alonso aka Berlin finish shooting?
    'Money Heist 5': Did Pedro Alonso aka Berlin finish shooting?
    Entertainment
  • Flipkart to acquire Cleartrip to diversify its offerings
    Flipkart to acquire Cleartrip to diversify its offerings
    Business
  • YouTuber teaches Spot robot dog to pee beer on command
    YouTuber teaches Spot robot dog to pee beer on command
    Science
  • Mamata asks EC to club 4 final Bengal election phases
    Mamata asks EC to club 4 final Bengal election phases
    Politics
  • Netflix, 'Mirzapur' creator Puneet Krishna collaborate for two new series
    Netflix, 'Mirzapur' creator Puneet Krishna collaborate for two new series
    Entertainment
Trending Topics
Samsung Apple OnePlus Mobiles Android TV Smart TV Latest Gadget Launch MediaTek Dimensity 1000+ COVAXIN Latest Tech News Upcoming Mobile Phones
Next News Article
Share
Cancel

Want to share it with your friends too?

Facebook Whatsapp Twitter Linkedin
Copied

Love Science news?

Subscribe to stay updated.

Science Thumbnail
India News Business News World News Politics News Sports News Science News Entertainment News Auto News Lifestyle News Inspirational News
Career News Bengaluru News Delhi News Mumbai News Bharti Airtel Mukesh Ambani Indian Premier League Samsung Virat Kohli Rohit Sharma
Cricket News YouTube Hollywood News WhatsApp Netflix Bollywood News ISRO Yoga Honda Batman
Football News BMW Vaccine Reliance Jio OPPO Food News, Healthy Recipes Apple Royal Challengers Bangalore Rishabh Pant Toyota
Fashion Tips Mercedes Sidharth Malhotra Isha Ambani India Vs England Cricket OnePlus Mobiles Android TV Smart TV Marvel Comics Avengers
Neha Kakkar Big Bang Theory X-Men TATA
About Us Privacy Policy Terms & Conditions Contact Us News Reviews News Archive Topics Archive Find Cricket Statistics
Follow us on
Facebook Twitter Linkedin Youtube
All rights reserved © NewsBytes 2021