Dangerous new Android malware infects 11 million devices – here’s what we know

Cybersecurity researchers have revealed that malware has entered the Google Play App Store thanks to a compromised software development kit (SDK).

The malware, dubbed Necro, ended up on at least 11 million devices, and possibly many more, the Kaspersky team noted. Necro infiltrated an advertising SDK called “Coral SDK,” which was supposed to be used to integrate various advertising modules into an application. However, using steganography, the SDK implements phase-two malware capable of a number of malicious activities, including loading ads via invisible WebView windows, downloading and executing arbitrary JavaScript files, facilitating fraud, and redirecting malicious traffic.