
"a malicious application hosted on the Google Play Store"
Thank God Google scans all apps it hosts, right ?
Crooks are using an Android banking Trojan dubbed Godfather to steal from banking and cryptocurrency exchange app users in 16 countries, according to Group-IB security researchers The security firm first detected Godfather in June 2021 and as of October, the credential-stealing malware has targeted the users of more than 400 …
> The security researchers say they don't know exactly how Godfather infects devices.
> "While Group-IB was unable to obtain the payload, analysts believe that a malicious application hosted on the Google Play Store contained the Godfather Trojan,"
Or in other words that is pure speculation. Most apps are installed from Play so there's a good chance it came from there, for all they know the source could be a sideloaded APK hosted on a porn site.