Malicious Google Play Apps Infect 330K Android Devices

Malicious Apps on Google Play

In the city of New Delhi, researchers have discovered a concerning Android backdoor called ‘Xamalicious’. This backdoor has managed to infect a significant number of devices, around 338,300, through malicious apps found on Google Play.

According to Bleeping Computer, McAfee, a company specializing in computer security software, recently uncovered a total of 14 infected apps on Google Play. Surprisingly, three of these apps had managed to accumulate an impressive 100,000 installs each.

Even though the apps have been taken down from Google Play, users who downloaded them since mid-2020 might still have Xamalicious infections on their phones. These infections need to be manually cleaned up and scanned.

Some of the most well-liked apps from Xamalicious are Essential Horoscope for Android with 100,000 installs, 3D Skin Editor for PE Minecraft with 100,000 installs, Logo Maker Pro with 100,000 installs, Auto Click Repeater with 10,000 installs, Count Easy Calorie Calculator with 10,000 installs, Dots: One Line Connector with 10,000 installs, and Sound Volume Extender with 5,000 installs.

Furthermore, a specific set of 12 harmful applications containing the Xamalicious threat are being spread through unauthorized third-party app stores. These apps infect users by downloading APK (Android package) files, as stated in the report.

Based on McAfee telemetry data, a significant number of infections were found on devices located in the United States, Germany, Spain, the UK, Australia, Brazil, Mexico, and Argentina.

Xamalicious is a backdoor that targets Android devices. It is designed to be hidden within apps built using the Xamarin framework, making it harder to detect through code analysis.

Upon installation, the app requests Accessibility Service access, which enables it to carry out privileged operations like navigation gestures, hiding on-screen objects, and granting additional permissions.

After being installed, it establishes a connection with the C2 server to obtain the second-stage DLL payload (‘cache.bin’) if specific criteria related to geography, network, device configuration, and root status are satisfied.


Subscribe to Our Newsletter

Related Articles

Top Trending

girls in STEM strategies with visible results
Encouraging Girls in STEM: Strategies That Work and Build Real Confidence!
Best Online Courses to Learn Advanced SEO Metrics
From GA4 to AI Search: Best Courses to Upgrade Your SEO Skills
Green Hydrogen Fuel
The Rise Of Green Hydrogen As A Clean Fuel Source
energy-efficient LED lights and appliances
Benefits of Using Energy-Efficient LED Lights and Appliances
Check Your Real Internet Speed
How to Check Your Real Internet Speed and Detect ISP Throttling

Fintech & Finance

HONOR 600 Pro vs HONOR 600 Lite 5G
HONOR 600 Pro vs HONOR 600 Lite 5G: Full Comparison with Expected India Pricing
How to Dispute a Credit Card Charge Successfully
How To Dispute A Credit Card Charge Successfully
How to Protect Yourself from Financial Scams
Financial Scam Prevention Tips to Protect Your Money
The Truth About Buy Now Pay Later Services
The Truth About Buy Now Pay Later Services
best UK current accounts 2026
9 Best UK Current Accounts with the Highest Interest and Best Perks in 2026

Sustainability & Living

Green Hydrogen Fuel
The Rise Of Green Hydrogen As A Clean Fuel Source
energy-efficient LED lights and appliances
Benefits of Using Energy-Efficient LED Lights and Appliances
Wind Power Global Energy Markets
How Wind Power Is Reshaping Global Energy Markets
Circular Economy Basics
Circular Economy Explained: Why Waste Is A Design Flaw
Eco-Friendly Bathroom Plan
Eco-Friendly Bathroom: My 30-day Conversion Plan With Products [Join the Challenge]

GAMING

Custom Mechanical Keyboard
DIY: Build a Custom Mechanical Keyboard That Feels Like Yours
open-world games done right
The 9 Best Open-World Games Done Absolutely Right
best couch co-op games
10 Best Couch Co-Op Games Worth Playing Together With Family and Friends
best story driven games
13 Best Story-Driven Games That Stay With You In Your Memories
multiplayer games worth playing
The 8 Best Multiplayer Games Worth Playing With Friends

Business & Marketing

The Truth About Buy Now Pay Later Services
The Truth About Buy Now Pay Later Services
Guest Posting In 2026
Guest Posting In 2026: Is It Worth It? And How To Do It Right
New Zealand social media marketing
13 Critical Facts About How New Zealand's Small Market Forces Brands to Be Creative on Social Media
Cold Email in 2026
Cold Email In 2026: What Works, Lands In Spam, And What Converts
Entrepreneurial Spirit Promotes Social Change
Entrepreneurial Spirit Promotes Social Change

Technology & AI

Check Your Real Internet Speed
How to Check Your Real Internet Speed and Detect ISP Throttling
Custom Mechanical Keyboard
DIY: Build a Custom Mechanical Keyboard That Feels Like Yours
My Image Search Techniques
Mastering Image Search Techniques: Your Ultimate Guide To Reverse Image Search
AI in modern classrooms
How AI in Modern Classrooms Is Transforming Learning
Tikcotech
The Power of Tikcotech: Your All-in-One Solution For TikTok Success

Fitness & Wellness

beginner home workouts
9 Beginner Home Workouts to Try for Real Results: Start Your Fitness Journey!
setting realistic fitness goals
Setting Realistic Fitness Goals: A Beginner’s Practical Guide That Actually Works
best home workouts guide
39 Home Workout Routines for Every Fitness Level to Get Fit Without a Gym
beginners fitness guide
Beginner’s Complete Fitness Guide: A Practical Beginners Fitness Guide for Real Life
DIY Ergonomic Home Office Setup
How I Changed My Home Office After Three Spine Surgeries