Skip to main content

Did you download this fake ad-infected WhatsApp from the Google Play Store?

fake WhatsApp
Google/The Hacker News
Last week, an official-looking version of the popular WhatsApp messaging application for Android appeared on the Google Play Store, and more than one million users were tricked into downloading the fake app. The “Update WhatsApp Messenger” download page even appeared to come from the actual creators, as it included the real developer’s title “WhatsApp Inc.” How could something malicious have fooled so many users?

It turns out the cybercriminal used some Unicode trickery to make it appear authentic. As you can see in the app details captured in the screenshots above from The Hacker News, the scam artist added an invisible character space in the actual company name: “WhatsApp+Inc%C2%A0.”

Recommended Videos

Although it looks very much like the real thing, installing the rogue software will run the real Android WhatsApp client, but with advertising plastered around it.

A Redditor named DexterGenius first spotted the discrepancy and decompiled the download code to find out what it really did. “The app itself has minimal permissions (internet access) but it’s basically an ad-loaded wrapper which has some code to download a second apk, also called ‘whatsapp.apk.,’ DexterGenius wrote. “The app also tries to hide itself by not having a title and having a blank icon.”

The scam app has now been removed from the official Google Play Store, but it’s curious how it ended up there in the first place, as it would lead users to think they’re downloading a legitimate app directly from a Facebook-owned property.

Google has recently been making efforts to remove “zombie apps” from its Play Store, and has even deployed AI algorithms to detect potential infections with its Play Protect system. Still, the ongoing presence of malware and adware on the service remains a real concern.

When asked for comment on the fake WhatsApp download, Google told The Register it was “looking into the matter.”

Even when downloading or updating from a trusted source such as the Google Play Store, it pays to be vigilant. Malware on mobile devices has seen a sharp increase lately, and Google may soon be introducing a “panic button” feature than can get you out of a jam if you inadvertently download the wrong thing.

Mark Austin
Former Digital Trends Contributor
Mark’s first encounter with high-tech was a TRS-80. He spent 20 years working for Nintendo and Xbox as a writer and…
Google is paying a $700 million fine, and you’re getting some of it
Google Play Store on the Samsung Galaxy A53 5G.

If you think your Tuesday is off to a rough start, at least you aren't Google. In the wee hours of the morning on Tuesday, December 19, Google confirmed that it's paying $700 million as part of a settlement regarding antitrust concerns around the Google Play Store.

In July 2021, over 30 states (plus Washington, D.C.) filed a lawsuit against Google over its business practices related to the Google Play Store on Android. Specifically, the lawsuit targeted fees Google charges developers to use the Play Store — and the alleged lack of competition the Play Store allows. Google settled the lawsuit this past September, and now Google has announced the details of that settlement.
Google's paying you $630 million ... kind of

Read more
WhatsApp now lets you send self-destructing voice messages
WhatsApp logo on a phone.

If you’re on WhatsApp and regularly make use of the view once feature for photo and video messages, then you might be interested to learn that the feature has now been expanded to voice messages.

WhatsApp’s view once feature does what it says, deleting a message after it’s been viewed a single time. It’s been available for photos and videos since 2021, but now you can also send voice messages that can only be played once before they, too, disappear from the app.

Read more
WhatsApp used to be one of my favorite apps. Now, I can’t stand it
WhatsApp logo on a phone held in hand.

For the best part of the last decade, WhatsApp has been my primary means to stay in touch with friends, family, peers at work, and even strangers. Texting is not as prevalent in my country, India, as it is in the U.S. for reasons such as the sheer dominance of Android users (as well as the diminutive share of iOS, and therefore, iMessage users), capped carrier costs for SMS-based messaging, and the poor understanding of RCS.

WhatsApp, on the other hand, is more widely used here than any other communication medium, primarily because it's free and allows the exchange of a multitude of types of media without being limited by national borders. People of all ages use and love it -- and they collectively send enough messages to clog up the internet.

Read more