Hackers forged Google Play Store pages to carry out cryptocurrency mining and wallet hijacking attacks targeting Brazilian users

By: rootdata|2026/03/22 20:42:00
0
Share
copy

Hackers have launched Android malware attacks in Brazil by spoofing a phishing page that mimics the Google Play Store. Currently, all known victims are located in Brazil.

The attackers set up a phishing website that closely resembles Google Play, enticing users to download a fake application called "INSS Reembolso." Once installed, the application releases hidden malicious code in stages and loads it directly into memory, leaving no visible files on the device, which makes it highly stealthy. One of the core functions of the malware is cryptocurrency mining, with an embedded XMRig mining program compiled for ARM devices that silently connects to the attacker's controlled mining server in the background. The program monitors battery level, temperature, and device usage status, dynamically adjusting mining behavior to evade detection, and bypasses Android's background process management mechanism by looping silent audio files.

Some variants also include banking trojans that can overlay fake pages on the USDT transfer interface of Binance and Trust Wallet, silently replacing the recipient address. Additionally, the malware supports various remote control commands such as recording, screenshotting, keylogging, and remote locking of the device.

-- Price

--

You may also like

Only 43% ROI on $1, why are 87% of Polymarket traders in the red?

Not due to bad luck, but based on gut feeling to determine position size, ignoring new information changes, and paying for "optimism bias" in every market order trade.

After L2 Fraud, Ethereum Turns to ‘Economic Zone’ Self-Help

The original vision of L2 and its role in Ethereum is no longer tenable. We need a new path forward.

AI has simultaneously created a shortage and surplus of memory

Huaqiangbei and the US retail market simultaneously experienced a steep decline in RAM prices

How Can the Average Person Win in the 2026 AI Boom?

Career, Income, and Entrepreneurship as Three Opportunity Pathways

When Wall Street Meets Crypto, Here's Your "Stock Market Beginner & Advanced Guide"

Crypto is entering a "Wisdom Time," where users, the media, smart money, and even CEX are all shifting their focus to one goal — the US stock market.

StandX Introduces SIP1 and SIP2: Holding Subsidy Mechanism Launched, Reshaping On-Chain Trading and Reward Structure

Against the backdrop of the continuous evolution in the decentralized derivatives trading landscape, StandX is strengthening its competitive edge through product innovation. Recently, StandX officially introduced two core upgrade proposals — SIP1 (Block Trade) and SIP2 (Position Yield), enhancing user experience and strategic efficiency from the perspectives of trade execution and fund yield. This also signifies a further deepening of StandX's product mechanics and revenue design, signaling a key milestone in the project's ongoing advancement.

Popular coins

Latest Crypto News

Read more