/
Navigation
Chronicles
Browse all articles
Explore
Semantic exploration
Research
Entity momentum
Nexus
Correlations & relationships
Story Arc
Topic evolution
Drift Map
Semantic trajectory animation
Posts
Analysis & commentary
Pulse API
Tech news intelligence API
Browse
Entities
Companies, people, products, technologies
Domains
Browse by publication source
Handles
Browse by social media handle
Detection
Concept Search
Semantic similarity search
High Impact Stories
Top coverage by position
Sentiment Analysis
Positive/negative coverage
Anomaly Detection
Unusual coverage patterns
Analysis
Rivalry Report
Compare two entities head-to-head
Semantic Pivots
Narrative discontinuities
Crisis Response
Event recovery patterns
Connected
Search: /
Command: ⌘K
Embeddings: large
TEXXR

Chronicles

The story behind the story

days · browse · Enter similar · o open

Researchers found 75 apps on Google Play and 10 on Apple's App Store that engaged in ad fraud and collectively had 13M installs; Apple and Google removed them

Bill Toulas / BleepingComputer :

BleepingComputer Bill Toulas

Context & Ripple Effects

The removals follow a recurring Google Play enforcement pattern: researchers previously tied more than 240 Play Store apps to a single fraudulent ad business and identified an ad-fraud network spanning apps and websites. The current findings extend the issue beyond Android-only cases because Apple also removed identified apps from its store.

Earlier Play Store cases involved both low-quality games and children’s or utility apps, showing that download scale has repeatedly preceded detection rather than preventing distribution at review.

First-order effects

  • Apple and Google have removed the 85 identified apps, cutting off their access to users through the App Store and Google Play.
  • The apps’ developers lose their store listings and the ad-fraud activity tied to 13 million installs is disrupted.

Second-order effects

  • Google’s Play review and enforcement teams face renewed pressure to detect coordinated ad-fraud behavior before apps accumulate large install bases, given the earlier 240-plus-app operation.
  • Advertisers whose campaigns were exposed to the removed apps have another indication that store listing approval alone does not eliminate fraudulent ad activity.

Third-order effects

  • Repeated researcher-led discoveries followed by removals point to app-store fraud controls operating substantially after distribution; if the pattern persists, platform trust will depend increasingly on continuous behavioral monitoring rather than initial review alone.
  • The inclusion of both major mobile stores makes ad fraud a cross-platform marketplace-governance problem, rather than one confined to Google Play.

The trend: Mobile app stores are confronting recurring, researcher-identified ad-fraud networks that reach users at scale before platform enforcement removes them.

Discussion

  • @fosspatents Florian Mueller on x
    Apple spends about 10 minutes on average on the *manual* review of an app (most of the time, that's an update to an existing app). As @keleftheriou and others have proven over and over, bad guys sneak their stuff past app review all the time. This here is just the latest example.…
  • @thezedwards Zach Edwards on x
    Boom! My employer https://humansecutity.com/ just dropped a rare blog post about an *active data supply chain attack* currently abusing ~180+ Android & iOS mobile apps that are stealing ad revenue @ https://www.humansecurity.com/ ... This is your classic “ads off-screen” but it's…
  • @lapcatsoftware Jeff Johnson on x
    The platform gatekeepers are 100% incompetent. https://twitter.com/...
  • @securewithhuman Human on x
    BREAKING: HUMAN's Satori Threat Intelligence & Research team has discovered an operation codenamed Scylla, which targets SDKs within mobile apps that have been downloaded over 13 million times. Learn more: https://www.humansecurity.com/ ... #adfraud #cyberattacks #fraud #KnowWhos…