The Indian government issued a cyber security alert for Android phone users. Authorities warned about dangerous apps promoted through Facebook and Instagram advertisements.
These apps appear like normal adult content platforms. However, after installation, they can threaten personal information and banking details.
The warning came from the Indian Cyber Crime Coordination Centre (I4C), National Cybercrime Threat Analytics Unit (NCTAU), and Ministry of Home Affairs.
The advisory mentioned apps including Night Play, Reloop, Kyss, Vimo, Rivo, Nexo, and Vixa.
How social media ads become a cyber trap
According to the government, this fraud method begins through social media advertisements or suspicious links.
Users may see adult content-related advertisements on Facebook or Instagram. After clicking, they may reach websites asking them to download APK files.
These files often come from outside Google Play Store. Therefore, they may avoid regular security checks followed by trusted app stores.
Fake apps can misuse phone permissions
After installation, harmful APK files can download another application through fake updates. Later, these apps may request multiple permissions.
The biggest risk involves accessibility access permission. This feature helps disabled users, but attackers can misuse it.
Once granted, criminals may control parts of the phone remotely. They can also run harmful software and attempt unauthorised financial transactions.
Additionally, some apps may install VPN services on devices. This can route internet traffic through attacker-controlled servers.
Consequently, private information faces a higher risk of exposure.
Government shares safety steps for users
The government warned that some harmful apps may resist normal deletion methods. Therefore, users should act quickly after noticing unusual phone activity.
Authorities advised downloading apps only from trusted platforms like Google Play Store. Users should avoid APK files received through advertisements, unknown websites, or suspicious links.
Moreover, people should not provide accessibility access to unfamiliar apps. They should keep Google Play Protect active and install Android updates regularly.
Bank accounts and UPI need regular checks
The threat does not remain limited to mobile devices. Harmful apps with permissions can also put banking and UPI transactions at risk.
Therefore, users should regularly monitor bank accounts and UPI activity. If any unknown transaction appears, they should immediately contact their bank.
Steps to remove suspicious applications
If an unknown app does not uninstall normally, users can restart their phone in safe mode.
Afterwards, they can open Settings and remove the suspicious application from the Apps list. If problems continue, users can consider a factory reset after backing up important data.
Furthermore, people facing cyber fraud or suspicious app issues can contact the 1930 helpline. They can also file complaints through the National Cybercrime Reporting Portal.












