Malware found in more than 190 Android apps

SpinOk malware was found in apps downloaded more than 30 million times

Add bookmark
Malware found in more than 190 Android apps

SpinOk malware has been found in multiple Android apps that have been downloaded more than 30 million times.

The malware-riddled apps were found on the Google Play store, following an investigation by cyber security company CloudSEK. Following their investigation, the research team found that 193 apps on the Google Play store were infected with malware, 43 of which were active within the last week.

SpinOk malware was first discovered by cyber security software company Dr Web in May 2023. Distributed as an advertisement software development kit (SDK), the Trojan malware actually acts as spyware. Dr Web found in May that the malware was present in apps that had been downloaded more than 421 million times.

SpinOk malware is particularly malicious as it poses as a legitimate SDK for minigames with daily rewards. This entices both developers to download and use the kit on their apps and victims to download and run the malware frequently.

Once on a device, SpinOk malware is able to steal private data including images, files and videos on the device and send it to a private server. It can also hijack payments to cryptocurrency wallets and steal payment card details and login credentials. This can have a devastating impact on victims, as hackers may have access to personal or private images, documents and may steal their identities or money.

SpinOk malware was able to infect so many apps as it was distributed via a SDK-based supply chain attack. Software developers likely downloaded the SDK without knowing about the Trojan malicious software held within it.

The Google Play store has said it is taking “appropriate action on apps that violate [its] policies”. 


Upcoming Events

Automotive Cyber Security, Connectivity & SDV Week 2025

18th - 20th November, 2025

Van der Valk Hotel Berlin Brandenburg, Germany

Automotive Cyber Security, Connectivity & SDV Week 2025

Digital Identity Week

1st - 2nd September 2026

Sydney, Australia

Digital Identity Week

Latest Webinars

From Dependencies to Defences: Navigating Software Supply Chain Security

2025-09-24

11:00 AM - 12:00 PM SGT

Learn how to defend your software supply chain from dependency threats and build resilient security...

Unpacking global regulatory frameworks to enhance third-party operational resilience

2024-11-14

11:00 AM - 12:00 PM EST

Join this webinar to explore the resilience-focused requirements of DORA, NIS2 and other global regu...

Preventing financial and reputational risk with process intelligence

2024-05-23

11:00 AM - 12:00 PM EDT

Learn how to manage risk stemming from poorly controlled processes in a collaborative way

Recommended