Android Users Face a new Ransomware Threat

A new malicious application has been discovered in the Google Play Store. The application in question contains a ransomware strain that has infected at least one user so far. Under the “Charger” name, this new ransomware resides within the EnergyRescue mobile application. As one would expect from this malware, it starts stealing sensitive information once the application is installed and executed.

New Android Ransomware Threat

Similarly to all other mobile application stores, Google’s Play Store thoroughly screens new applications being submitted. If there is anything suspicious about the application or its source code, it will often get declined. For some reason, the EnergyRescue application made it through with relative ease, although the damage has been somewhat contained. Security researchers noted “only” one handset had been affected by this new ransomware strain so far.

The Charger ransomware is proving to be a nasty type of malware that steals sensitive information from infected devices. SMS contacts are stolen right away, and device owners will be asked to grant the application full administrator privileges. Once the user grants these privileges, the Charger ransomware will lock the Android device and display a message asking for ransom.

Users are prompted to pay 0.2 Bitcoin, otherwise, the criminals would start leaking the device owner’s personal information on black markets every 30 minutes. It is not possible to get rid of this ransomware by turning off or restarting the mobile device. The criminals also claim they have gathered all information related to social media accounts, financial services, and login information, although that has not been officially confirmed.



Related Post

It is one of the first times a mobile ransomware strain demands a Bitcoin payment. It remains unclear if any affected users have met this demand, although that seems highly unlikely. Interestingly enough, the app has been in the Google Play Store for a total of four days, while it has only been downloaded a handful of times. It appears researchers caught this ransomware before it could become a large problem.

Further research showed the world how this particular type of Android ransomware has been developed in a rather crafty manner. If the malware detects the mobile device is located in Russia, Belarus, or Ukraine, it will not execute the payload. It appears this decision is made to avoid legal actions in those countries. Whether or not that means the creator of Charger resides in either of these countries, remains to be seen, though.

It is not the first time Android users are faced with a major malware or ransomware threat, though. The HummingBad malware has caused a lot of havoc in recent times, as a total of twenty applications contained this payload. Somehow, they all got listed in the Google Play Store, yet were removed quickly afterward. Apple users can be hit with these types of ransomware attacks, and it is not unlikely criminals will target that operating system in the coming months.

If you liked this article, follow us on Twitter @themerklenews and make sure to subscribe to our newsletter to receive the latest bitcoin, cryptocurrency, and technology news.

JP Buntinx

JP Buntinx is a FinTech and Bitcoin enthusiast living in Belgium. His passion for finance and technology made him one of the world's leading freelance Bitcoin writers, and he aims to achieve the same level of respect in the FinTech sector.

Share
Published by
JP Buntinx

Recent Posts

Top 5 Modular Blockchain Tokens Less Than $1 Price Mark To Monitor In August 2025

As the blockchain ecosystem continues to evolve, modular blockchains are emerging as a promising frontier,…

4 hours ago

MetaMask Proposes Stablecoin Launch, Taps Stripe to Bridge TradFi and DeFi

MetaMask wants its own stablecoin. It’s calling it MetaMask USD (mmUSD). And if the recent…

1 day ago

Spartan, Stake & Betway: Top 2025 Crypto Gambling Prizes

Spartan’s $250K Lambo Challenge Tops 2025’s Crypto Gambling Prize War with Stake & Betway Crypto…

1 day ago

SharpLink’s Ethereum Accumulation Hits High Top With Staking Strategy

SharpLink is leaning hard into Ethereum. They buy. They stake. They hold. Ethereum currently trades…

2 days ago

Cardano Price Prediction: Is a Return to $2 Imminent or Just a FOMO Fantasy?

After months of consolidation, Cardano (ADA) is regaining investor attention thanks to renewed forecasts projecting…

3 days ago

Bitcoin and Ethereum Whales Quietly Accumulating—What Does This Mean for the Market?

Whales are back—and this time, they’re not making noise. Despite the relative calm in prices,…

3 days ago