Skip to main content

Rogue Android app will run up your bill

steamy windowAccording to security firm Symantec, an Android app that found itself in the hands of Chinese hackers is hijacking infected smartphones and charging clueless owners. The free app is called Steamy Window, which was modified with a backdoor Trojan added to its code. It was then rereleased to unapproved third-party app vendors, where it’s been picked up by Android owners and since then wreaking havoc on their texting bills.

The original Steamy Windows app, which is free in the legitimate Android marketplace, is nothing more than a phone functionality game. It appears to cover your screen in steam that you can “wipe off” with the touch of a finger. The malware-infected version, Symantec notes, will ask users for significantly more permissions during installation.

Symantec principle security response manager Vikram Thakur says this isn’t an unsophisticated operation either. “This one stands out,” he tells Computer World. “It’s pretty comprehensive in what it’s doing.” Thakur says the app is capable of installing various applications as well as hijacking a user’s browser and texting client. Sending the discreet texts is how the hackers are simultaneously profiting and running unsuspecting users’ bills up. According to Thakur, it continuously sends SMS texts and also prevents users from knowing they’ve run over their allotted text amount. Android.Pjapps (as it’s been labeled) can also block texts, so any queries from contacts you’re spamming could be deleted without you being any the wiser.

This very well could only be the beginning for mobile malware of this nature. The code is apparently easy to tack onto to other apps, and according to Thakur this type of app hack “seems to be ramping up” over the last several months. Of course, he points out that Android is particularly susceptible to this type of activity since phone owners can access and use apps from outside app stores.

Molly McHugh
Former Digital Trends Contributor
Before coming to Digital Trends, Molly worked as a freelance writer, occasional photographer, and general technical lackey…
The 1Password Android app just got a huge upgrade
The 1Password Android app, side-by-side, showing the light and dark mode.

The 1Password password manager app for Android has just gotten a huge new update, which unlocks the use of passkeys through its app. Held by many as the future of secure authentication, passkeys are the next evolution of the password, and from today, you'll be able to use 1Password to create, manage, and unlock your accounts that use passkey authentication.

1Password is one of the world's most popular password managers, with over 700,000 passwords saved. But it clearly sees that the future is elsewhere, as it has been leading the charge on taking passkeys into the mainstream.

Read more
The best iPhone and Android apps for Black History Month 2024
best iPhone and Android apps for Black History Month.

February is celebrated as Black History Month to honor Black Americans' remarkable achievements and contributions. The theme for this year is "African Americans and the Arts," which shines a light on the impact of African Americans in different artistic fields, such as cultural expression, visual and performing arts, fashion, literature, and more.

In this regard, we present a list of popular iOS and Android apps developed by Black-owned businesses and cover various topics such as finance, entertainment, wellness, and more. These apps run on all the latest smartphones, including the Samsung Galaxy S24 Ultra and iPhone 15 Pro.
Calendly

Read more
How to use Google’s Gemini AI app on your Android phone
How to use Gemini on your Android.based device.

Google's collaboration AI tool, Bard, has changed its name and is now known as Gemini. The tool is also now available as an app on the Google Play Store, meaning it's easier than ever to chat with Google's AI assistant on your Android phone.

Read more