Home SimBad malware infects over 200 Android apps, affects 150 million users

SimBad malware infects over 200 Android apps, affects 150 million users

Check Point Research has discovered a new malware campaign that have infected a total of 150 million Android users globally. The malware, dubbed SimBad, as many of the infected apps were simulator games, infected 206 apps found in the Google Play Store. SimBad disguises as ads to avoid suspicion.

Google has been battling malware in the Play Store for many years now. Towards the end of last year, malware had infected about 580,000 users.

SimBad malware campaign infects over 200 Android apps

According to Check Point’s IT security researchers, SimBad was disguised as an advertising kit named RXDrioder. It infected all the apps that used it to control how ads were being shown to their users. The makers of RXDrioder were secretly using their kit’s code to hide malware inside other apps. The apps were then hijacked to show ads, or perform phishing attacks, without the knowledge of their developer.

“We believe the developers were scammed to use this malicious SDK, unaware of its content, leading to the fact that this campaign was not targeting a specific county or developed by the same developer,” Check Point said.

SimBad has three main capabilities: displaying adverts, phishing and exposure to other applications. It’s an adware first, but can also redirect victims to a compromised website and download more malicious applications from the Play Store or remote server to implement phishing attacks.

As said earlier, SimBad infected 206 Android apps, which accumulate to a total of 150 million downloads globally. Snow Heavy Excavator Simulator, Hoverboard Racing, Real Tractor Farming Simulator, and Ambulance Rescue Driving are some of the infected apps. Click here for the full list of infected apps.

While Google has removed all of the infected apps from the Play Store now, they may continue to affect your device if you’ve them installed. So, make sure to remove them now and scan your device with a trustworthy anti-virus software.

About ReadWrite’s Editorial Process

The ReadWrite Editorial policy involves closely monitoring the tech industry for major developments, new product launches, AI breakthroughs, video game releases and other newsworthy events. Editors assign relevant stories to staff writers or freelance contributors with expertise in each particular topic area. Before publication, articles go through a rigorous round of editing for accuracy, clarity, and to ensure adherence to ReadWrite's style guidelines.

Get the biggest tech headlines of the day delivered to your inbox

    By signing up, you agree to our Terms and Privacy Policy. Unsubscribe anytime.

    Tech News

    Explore the latest in tech with our Tech News. We cut through the noise for concise, relevant updates, keeping you informed about the rapidly evolving tech landscape with curated content that separates signal from noise.

    In-Depth Tech Stories

    Explore tech impact in In-Depth Stories. Narrative data journalism offers comprehensive analyses, revealing stories behind data. Understand industry trends for a deeper perspective on tech's intricate relationships with society.

    Expert Reviews

    Empower decisions with Expert Reviews, merging industry expertise and insightful analysis. Delve into tech intricacies, get the best deals, and stay ahead with our trustworthy guide to navigating the ever-changing tech market.