Tech & Science

10 Million Android Devices Infected by Chinese Malware Operation, Google Lawsuit Claims

42
Security Risk - Hack - Threat

Google has filed a lawsuit in New York to shut down a massive malware operation that has infected over 10 million Android devices worldwide, including TV streaming boxes, tablets, and digital projectors.

The malware, known as “BadBox 2.0,” operates as a botnet – an army of infected devices that can be controlled remotely by cybercriminals. Google described it as “already the largest known botnet of internet-connected TV devices” and warned it continues to grow daily.

“Without warning, it could be used to commit more dangerous cybercrimes, such as ransomware or distributed denial-of-service (DDoS) attacks,” Google stated in court documents filed Thursday.

The threat spreads through low-cost, no-name Android devices manufactured in China. The malware is either preinstalled on devices or downloads as fake apps during setup through unofficial app stores. Hackers then sell access to infected devices to other cybercriminals, providing them with launching pads for attacks in the US and other countries.

Security researchers first reported the threat in March, followed by an FBI warning last month. However, the FBI only said “millions” of devices were affected without providing specific numbers.

Google’s lawsuit identifies several affected device models, including Android TV boxes with model numbers X88 Pro 10, T95, MXQ Pro, and QPLOVE Q9. The malware targets devices running open-source versions of Android that lack Google’s security protections.

The lawsuit alleges the hackers behind BadBox 2.0 are based in China and include at least 25 individuals or entities, though their identities remain unknown. Google is requesting a permanent injunction to force internet services tied to the malware to cease operations.

The legal action targets dozens of internet domains operated by Cloudflare, GoDaddy, and NameCheap that Google has linked to the malware’s command-and-control servers. Shutting down these servers would disrupt the botnet’s operations.

Beyond its potential for serious cybercrimes, BadBox 2.0 currently generates fraudulent clicks for mobile advertisements, creating revenue for the criminal operation. “BadBox 2.0 is particularly dangerous not only due to its scale, but also its flexibility,” the lawsuit states.

Google advises owners of affected devices to disconnect them from the internet. The company said the lawsuit “enables us to further dismantle the criminal operation behind the botnet, cutting off their ability to commit more crime and fraud.”

Written by
Sazid Kabir

I've loved music and writing all my life. That's why I started this blog. In my spare time, I make music and run this blog for fellow music fans.

Stay updated with nomusica.com. Add us to your preferred sources to see our latest updates first.

Related Articles

The moon moves in front of the sun in a rare "ring of fire" solar eclipse as seen from Singapore on December 26, 2019.
Tech & Science

“Ring of Fire” Solar Eclipse to Light Up Antarctica on Feb. 17

A rare “ring of fire” solar eclipse will take place on Tuesday,...

Artificial Intelligence (AI)
Tech & Science

AI.com Sold for $70 Million as Crypto.com CEO Bets Big on Artificial Intelligence

Crypto.com co-founder and CEO Kris Marszalek has entered the artificial intelligence space...

ChatGPT 5
AITech & Science

AI Experts Say Stop Relying on ChatGPT Alone

ChatGPT is one of the most popular AI tools in the world,...

Artificial Intelligence — AI
AITech & Science

AI Floods Research Papers, Scientists Call for Stricter Disclosure

Scientists are raising alarms over a surge of low-quality AI-generated research papers,...