The cybersecurity company McAfee has discovered a group of 15 malicious applications of the type SpyLoan either ‘spy loans’which qualifies as ‘predators’ and ‘a global threat’with more than 8 million installations in Google Playaimed mainly at users of South America, Southeast Asia and Africa. The report from McAfee, a member of the App Defense Alliance, has allowed them to be removed from the Google application store.
However, its presence on Google Play reflects the capacity of malicious actors, as even recent law enforcement actions against SpyLoan operators have failed to curb the problem, McAfee notes. The last major ‘SpyLoan cleanup’ on Google Play occurred in December 2023, when more than a dozen apps that had amassed 12 million downloads were removed.
What is a SpyLoan app
SpyLoan applications are promoted as financial tools that offer loans through a rapid approval process, under misleading and often false terms.
Once the victim installs one of these apps, they are validated using a one-time password that confirms they are in the targeted region. Subsequently, You are asked to submit sensitive identification documents, employment information and bank account details.
Furthermore, the applications abuse device permissions to collect sensitive dataincluding contact lists, SMS, camera, call log and location, to use them in extortion proceedings.
McAfee highlights that the data collection tactics of these applications include extraction of all SMS messages from the victim’s deviceas well as GPS/network location information, device data, operating system details, and sensor data.
Once a user takes out a loan through the app, they are forced to make high-interest payments and You are regularly harassed and extorted by carriers using data stolen from your phone. In some cases, scammers call the borrower’s family members to harass them as well.
The 15 predatory spy loan apps
McAfee research identified 15 malicious SpyLoan apps, installed more than 8 million times through Google Play alone. Below is the list of the eight most popular:
- Safe Loan-Fast, Secure – 1,000,000 downloads, directed mainly to Mexico.
- Quick Loan-Credit Easy – 1,000,000 downloads, directed mainly to Colombia.
- ได้บาทง่ายๆ–สินเชื่อด่ล – 1,000,000 downloads, directed mainly to Senegal.
- RupiahKilat-Dana cair – 1,000,000 downloads, directed mainly to Senegal.
- ยืมอมสุข – เงินกู้ – 1,000,000 downloads, aimed mainly at Thailand.
- See More – สินเชื่อด่ล – 1,000,000 downloads, aimed mainly at Thailand.
- CreditKu-Uang Online – 500,000 downloads, mainly aimed at Indonesia.
- Dana Kilat-Pinjaman kecil – 500,000 downloads, mainly aimed at Indonesia.
- Cash Loan-Vay tiền – 100,000 downloads, mainly aimed at Vietnam.
- RapidFinance – 100,000 downloads, aimed mainly at Tanzania.
- PrêtPourVous – 100,000 downloads, directed mainly to Senegal.
- Huayna Money – Quick Loan – 100,000 downloads, directed mainly to Peru.
- Loans: Rápido Crédito – 100,000 downloads, aimed mainly at Chile.
- Get Sol-Money Fast – 100,000 downloads, directed mainly to Peru.
- ÉcoPrêt Prêt En Ligne – 50,000 downloads, mainly aimed at Thailand.
How to protect yourself from SpyLoan apps
Despite Google’s app review mechanisms to block software that violates Google Play terms, SpyLoan apps they continue to manage to distribute.
To protect yourself against this risk:
- Lee user reviews.
- Check the reputation of the developer.
- Limit the permissions granted to applications when installing them.
- make sure Make sure Google Play Protect is active on your device.