• Download the Constitution of Pakistan
  • Advertise
Saturday, May 10, 2025
  • Login
NEWSLETTER
ECONOMY
  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology
No Result
View All Result
  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology
No Result
View All Result
ECONOMY
No Result
View All Result
Home Cyber Security

Google removes unnamed apps from Play Store after connection with fraudulent Ad Bot

by News Publishing
August 31, 2020
in Cyber Security, Technology
Reading Time: 2 mins read
0
Google & Terracotta Botnet
Share on FacebookShare on TwitterLinkedinWhatsapp

A set of unnamed android applications were removed from the Google Play Store by Google in wake of the fraudulent botnet connection. The applications were reported as a part of the fraud botnet named as the TERRACOTTA. A team from Satori researchers of cybersecurity firm White Ops detected the bot. The specialized bot detection personnel of the White Ops team tracked the bot. The team is said to be tracking and looking over TERRACOTTA since late 2019. The time when the botnet was active said by the experts themselves.

Fraudulent Applications were uploaded on the Google Play Store by the TERRACOTTA operators. These applications offered free bonuses and free products in exchange to the installation of the programs on their device. The free bonus is said to include, concert tickets, free shoes, trainers, coupons, and expensive dental procedures. The victims were fond of the gifts and were prompted to install the applications. The user had to wait two weeks to receive their prize.

The Applications downloaded and secretly launched and operated a modified version of the WebView mini browser. This browser loaded fraudulent Ads, generating revenue for the attackers with the user’s impressions.

The APK commonly known as the main application code is written using a cross-platform development React Native. The app simply displays a form that the user fills to receive the supposedly free products from the application. However, no malicious function is found in the part of the application but contains malicious content in the .WAKE_LOCK and .FOREGROUND_SERVICE permissions.

From the botnet modules, a module handles the communication between the C&C servers. Such a connection is achieved through the messaging capability of Firebase. Firebase is a widely used mobile application platform, while, the advertisement fraud is activated by the push messages from Firebase. The victim is secretly giving impressions to the TERRACOTTA Fraudulent Advertisements without knowing.

As per the research of the professionals, the TERRACOTTA botnet in the month of June downloaded 2 Billion advertisements. Infection around 65000 smartphones. The researchers have found and presented their work to Google, which has taken the action against the malicious applications and removed the Applications from the Google Play Store.

Credits: SecurityLab

Tags: AndroidBotnetCybersecurityGoogleGoogle Play StoreTechnologyTERRACOTTAWhiteOps
News Publishing

News Publishing

Related Posts

UAE and Ai

UAE Launches AI Education from Kindergarten

by Anum Arif
May 5, 2025
0

DUBAI — May 5, 2025:In a landmark move to position itself as a global leader in technological innovation, the United...

Starlink

DR Congo Approves Starlink Amid Security Concerns

by Anum Arif
May 3, 2025
0

Kinshasa – 3 May 2025:The Democratic Republic of Congo (DRC) has officially granted a license to Starlink, the satellite internet...

Amazon

Amazon Shares Slip on Cloud Miss

by Anum Arif
May 2, 2025
0

Amazon's stock fell in after-hours trading on Thursday after the tech giant reported disappointing results from its cloud computing division...

Meta

Meta Exceeds Q1 Expectations, Boosts AI Investment

by Anum Arif
May 2, 2025
0

Meta Platforms, the parent company of Facebook and Instagram, reported strong financial results for the first quarter of 2025, exceeding...

M&S Suffers Digital Collapse due to Unknown Technical Issue

M&S: IT Outage Casued Digital Collapse

by Syed Mahad
May 1, 2025
0

A significant IT outage that has affected M&S - Marks & Spencer for nearly a week has had detrimental effects...

WordPress Antivirus

WordPress Antivirus Turned Out to Be a Trojan

by Syed Mahad
May 1, 2025
0

Cybercriminals are getting more creative, especially when it comes to attacking WordPress. One of the most deceptive tactics involves disguising...

Next Post

Jahangir Khan The Greatest Squash Player in the World

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

About Us

Economy.pk is a source of economic, political, business, finance, health and sports updates.

Important Categories

  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology

Social Media

  • Facebook
  • Instagram
  • Twitter
  • Linkedin
  • YouTube
  • Linkedin
  • TikTok
  • WhatsApp
  • About
  • Advertise
  • Careers
  • Contact

© 2024 Economy.pk - Web Development by Digital Otters

Welcome Back!

Login to your account below

Forgotten Password?

Retrieve your password

Please enter your username or email address to reset your password.

Log In
No Result
View All Result
  • Business
  • Education
  • Entertainment
  • Finance
  • Health
  • Life & Style
  • Politics
  • Sports
  • Technology

© 2024 Economy.pk - Web Development by Digital Otters