I4C warns of malware apps pushed on Instagram
Technology
Archived — This article has been archived. The information may be outdated.

I4C warns of malware apps pushed on Instagram

Livemint··1 Sept

India's National Cybercrime Threat Analytics Unit warned Android users about malicious apps disguised as adult-content downloads and promoted on Facebook and Instagram advertisements. Named apps include Night Play, Reloop, Kyss, Vimo, Rivo, Nexo and Vixa. Sideloaded APKs can seek Accessibility access, install further packages and enable unauthorised financial transactions on user phones, the agency said.

Prism

What It Means For You

  • Install apps only from trusted stores such as Google Play and avoid APKs from ads or unknown links.
  • Do not grant Accessibility permission to unknown apps; keep Google Play Protect and Android updates on.
  • Report fraud on 1930 or the National Cybercrime Reporting Portal, and check bank and UPI activity regularly.

What's Happening

  • Ads lead users to .live domains that ask them to install Android APKs outside Google Play.
  • After install, a first app may push a second package framed as an update and seek powerful permissions.
  • Some malware may add a VPN that routes traffic through attacker-controlled servers.

How to Remove Stubborn Apps

  • NCTAU says restart in Safe Mode, then uninstall unknown apps under Settings, Apps.
  • Revoke device-admin rights in security settings if an app blocks normal uninstall.
  • If the app returns after reboot, back up data and factory reset the phone, the advisory says.
all-news

More in Technology