Novoice malware found in 50 google play apps installed 2.3 million times
Over 50 Android apps, downloaded a staggering 2.3 million times, have been discovered to be infected with a new malware strain called NoVoice. According to cybersecurity researchers at McAfee, the malicious payload was hidden within seemingly harmless apps in the Google Play Store.
Novoice exploits android vulnerabilities for root access
Once installed, the NoVoice malware attempts to exploit any existing Android vulnerabilities to gain root access on the device. This allows the attackers to steal sensitive user data, including login credentials for financial apps, as well as install and delete other apps without the user's knowledge.
In some cases, McAfee found that the malware can survive even a factory reset, leaving the device vulnerable to further attacks.

Google play protect removes infected apps, android users advised to update
Google has confirmed that apps infected with NoVoice have been automatically removed by Google Play Protect and new installations blocked. The company advises all Android users to ensure their devices are running the latest security updates.
Unfortunately, Bleeping Computer did not disclose the identities of the more than 50 affected apps, but the SwiftClean app by developer Biodun Popoola was found to be one of the carriers of the NoVoice payload.
To avoid falling victim to this type of attack, experts recommend only downloading apps from the official Google Play Store and keeping devices up to date with the latest security patches.
