This fake Telegram app is just riddled with malware

Telegram logo
(Image credit: Telegram)

A fake Telegram app for Android has been discovered that is loaded with malware and capable of a myriad of malicious activities. 

The news was broken by cybersecurity researchers Check Point, which claim that the app looks and feels like the genuine thing. However, after being installed, malware code starts running in the background, posing as an internal application update service. The malware first gathers data on the device it’s being installed to, then sets up a communications channel with its server, then downloads further configurations, and then waits for the payload.

The payload itself is the Triada trojan which, upon delivery, gains system privileges and injects itself into other processes on the device.

Triada

The researchers further explained that past analysis of Triada uncovered a wide range of abilities, from signing victims up for various paid subscriptions, to making in-app purchases via SMS and phone numbers, to displaying invisible and in-background ads. Triada can also steal passwords and other sensitive data from the devices, it was said. 

The app was not found on Android’s official app repository, but rather on third-party app stores and standalone websites. The researchers say modified versions of popular apps are a common occurrence, as many of today’s top apps have different restrictions, including geographical ones. Some only have a paid version, and are thus inaccessible to many users.

However, users should refrain from downloading unofficial versions of apps as it’s almost impossible, for the majority of the users, to know if there’s any malware buried deep in the app’s code. 

To stay safe from such threats, the researchers advise users always download apps from trusted sources such as official websites and official app stores. They should also verify who the app’s authors are, and read through the comments and reviews, if possible. Finally, users should be wary of anny permissions newly installed apps ask for. These are usually the biggest red flag. 

TOPICS

Sead is a seasoned freelance journalist based in Sarajevo, Bosnia and Herzegovina. He writes about IT (cloud, IoT, 5G, VPN) and cybersecurity (ransomware, data breaches, laws and regulations). In his career, spanning more than a decade, he’s written for numerous media outlets, including Al Jazeera Balkans. He’s also held several modules on content writing for Represent Communications.

Read more
Android phone malware
This nasty Android malware is posing as the Telegram Premium app
Telegram
New Golang malware is hijacking Telegram to help itself spread
Android phone malware
Screen reading malware found in iOS app stores for first time - and it might steal your cryptocurrency
 In this photo illustration a Google Play logo seen displayed on a smartphone.
Why is there so much spyware hidden in the Play Store?
A close-up photo of an iPhone, with the App Store icon prominent in the center of the image.
App stores are increasingly becoming a major security worry
An Android phone being held in the hand
These malicious Android apps were installed over 60 million times - here's how to stay safe
Latest in Phone & Communications
GlocalMe KeyTracker
When I tested this global tracker, it trounced the Apple AirTag in so many ways
Privacy Hero II
Privacy Hero II VPN Router
ThinkPhone 25 by Motorola
I reviewed the ThinkPhone 25 by Motorola and while it's not as fast as its predecessor, it's the superior phone in so many ways
FRITZ!Box 7690 WiFi 7 Router
FRITZ!Box 7690 router review
Ulefone Armor Pad 4 Ultra Thermal
Ulefone Armor Pad 4 Ultra Thermal rugged tablet review
Unihertz Tank Pad 8849
Unihertz Tank Pad 8849 rugged tablet review
Latest in News
Zendesk Relate 2025
Zendesk Relate 2025 - everything you need to know as the event unfolds
Disney Plus logo with popcorn
You can finally tell Disney+ to stop bugging you about that terrible Marvel show you regret starting
Google Gemini AI
Gemini can now see your screen and judge your tabs
Girl wearing Meta Quest 3 headset interacting with a jungle playset
Latest Meta Quest 3 software beta teases a major design overhaul and VR screen sharing – and I need these updates now
Philips Hue
Philips Hue might be working on a video doorbell, and according to a new report, we just got our first look at it
Microsoft
"Another pair of eyes" - Microsoft launches all-new Security Copilot Agents to give security teams the upper hand