Skip to main content

Fake WhatsApp and TikTok apps are trying to fool Android users into downloading spyware — don't fall for this

Android malware on phone
(Image credit: Shutterstock)

A new spyware campaign is mimicking popular apps like TikTok, YouTube and WhatsApp in order to try and lure users into visiting phishing sites and downloading the ClayRat spyware.

As reported by The Hacker News, this campaign is also using Telegram channels in order to spread the spyware while the malicious sites are using artificially inflated download counts and manufactured testimonials in order to manufacture legitimacy.

How to avoid spyware and malicious websites

A hacker typing on a computer

(Image credit: Shutterstock)

Android users with Google Play Protect are safeguarded against known versions of this malware, as their devices come with this handy security tool pre-installed via Google Play Services. However, it never hurts to remember best practices when it comes to your online safety: Try to stick to known app manufacturers and websites, check the URLs of websites before visiting them and try not to click on sponsored links or ads as they can be used by hackers in their attacks.

Additionally, make sure all your devices are protected online with one of the best antivirus software solutions. While your phone like comes with Google Play Protect pre-installed, for additional security, you may want to consider running one of the best Android antivirus apps alongside it. At the same time, you want to make full use of extras included with your antivirus app or software like a VPN or a hardened browser and heed any alerts you see regarding potentially suspicious websites. Many of antivirus suites will also feature dark web alerts, identity monitoring, and more. All of these features can help protect you online and alert you immediately when something goes wrong.

As for ClayRat , given how many iterations of the spyware that have been detected so far, it's likely the cybercriminals behind it are working on new updates and adding extra malicious capabilities to it. For this reason, I don't see this spyware going away anytime soon and it's more likely that it will be used in attacks on Android users in other countries, so you'll want to keep your guard up to stay safe.

More from Tom's Guide

Network
Arrow
Intego
McAfee
Contract Length
Arrow
Showing 4 of 4 deals
Filters
Arrow
Amber Bouman
Senior Editor Security

Amber Bouman is the senior security editor at Tom's Guide where she writes about antivirus software, home security, identity theft and more. She has long had an interest in personal security, both online and off, and also has an appreciation for martial arts and edged weapons. With over two decades of experience working in tech journalism, Amber has written for a number of publications including PC World, Maximum PC, Tech Hive, and Engadget covering everything from smartphones to smart breast pumps. 

You must confirm your public display name before commenting

Please logout and then login again, you will then be prompted to enter your display name.