Android Users Face a new Ransomware Threat

A new malicious application has been discovered in the Google Play Store. The application in question contains a ransomware strain that has infected at least one user so far. Under the “Charger” name, this new ransomware resides within the EnergyRescue mobile application. As one would expect from this malware, it starts stealing sensitive information once the application is installed and executed.

New Android Ransomware Threat

Similarly to all other mobile application stores, Google’s Play Store thoroughly screens new applications being submitted. If there is anything suspicious about the application or its source code, it will often get declined. For some reason, the EnergyRescue application made it through with relative ease, although the damage has been somewhat contained. Security researchers noted “only” one handset had been affected by this new ransomware strain so far.

The Charger ransomware is proving to be a nasty type of malware that steals sensitive information from infected devices. SMS contacts are stolen right away, and device owners will be asked to grant the application full administrator privileges. Once the user grants these privileges, the Charger ransomware will lock the Android device and display a message asking for ransom.

Users are prompted to pay 0.2 Bitcoin, otherwise, the criminals would start leaking the device owner’s personal information on black markets every 30 minutes. It is not possible to get rid of this ransomware by turning off or restarting the mobile device. The criminals also claim they have gathered all information related to social media accounts, financial services, and login information, although that has not been officially confirmed.



Related Post

It is one of the first times a mobile ransomware strain demands a Bitcoin payment. It remains unclear if any affected users have met this demand, although that seems highly unlikely. Interestingly enough, the app has been in the Google Play Store for a total of four days, while it has only been downloaded a handful of times. It appears researchers caught this ransomware before it could become a large problem.

Further research showed the world how this particular type of Android ransomware has been developed in a rather crafty manner. If the malware detects the mobile device is located in Russia, Belarus, or Ukraine, it will not execute the payload. It appears this decision is made to avoid legal actions in those countries. Whether or not that means the creator of Charger resides in either of these countries, remains to be seen, though.

It is not the first time Android users are faced with a major malware or ransomware threat, though. The HummingBad malware has caused a lot of havoc in recent times, as a total of twenty applications contained this payload. Somehow, they all got listed in the Google Play Store, yet were removed quickly afterward. Apple users can be hit with these types of ransomware attacks, and it is not unlikely criminals will target that operating system in the coming months.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Bitcoin Crashes Below $67,000 as $700 Million Wiped From Crypto Market in Hours

Bitcoin is bleeding. The world's largest cryptocurrency plunged to $66,997 on Tuesday, shedding over $6,750…

23 hours ago

Ripple’s RLUSD Goes Live in Türkiye, Hits $1.7 Billion Market Cap

Ripple is not pausing for breath. The company has brought its dollar-pegged stablecoin, $RLUSD, to…

1 day ago

Bitwise Launches Its First Tokenized Fund With $259M in Assets and 4% Annual Yield

Bitwise Asset Management has just made its first move into tokenized funds, and it comes…

2 days ago

Binance Launches US Stocks and ETFs Trading for Non-US Users With Zero Commission

Binance just made a move that blurs the line between crypto exchange and traditional brokerage…

2 days ago

NEAR Protocol Ships Confidential Payments, Crosses $19B in Intents Volume, and Partners With Bermuda Government

NEAR Protocol has had a month that most blockchain projects would stretch across an entire…

3 days ago

Chainlink Records 7 New Integrations Across 6 Services and 4 Chains

Something is becoming increasingly clear about Chainlink, the integrations are not slowing down. The protocol…

3 days ago