Navigation MenuRealWire Limited

Delivering Relevance, Releasing Influence

Tweet Facebook LinkedIn
Press Release

Returning rogue weather app continues mobile ad fraud

Media
Links

34 million new suspicious transaction attempts in just six months by second time offender

London, September 24th 2019 – A weather forecasting app from Chinese company TCL Communications has once again been caught making digital purchases of premium services without the knowledge of the phone’s owner. It is the second time the app has been exposed for this activity.

Weather TCL Activity
Weather TCL Activity

First caught in January 2019 by mobile technology company Upstream to be triggering false premium transactions and, at the time, secretly harvesting consumer data, the app – called Weather Forecast: World Weather Accurate Radar – is preinstalled on specific Alcatel phones and also available on Google Play Store. Following the revelation by Upstream the app immediately ceased its background activity and was withdrawn from the Play Store[1].

However, after an idle two-month period and despite the earlier exposure, Upstream says its Secure-D mobile security platform combating advertising fraud detected and blocked some 34 million fresh suspicious transaction attempts from Weather Forecast. The version of the weather app preinstalled on Alcatel Pixi4 devices attempted to subscribe nearly 700,000 mobile consumers to premium digital services without their knowledge in just six months.

Revealing the rise of the fresh attacks, Upstream CEO Guy Krief said: “It seems lightning does strike twice. This weather app has lain low until the storm passed before returning to its old ways – with a spike in its rogue behavior just a couple of months after it was reported, followed by continuous suspicious activity in deliberately regulated volumes to continue siphoning funds while remaining below the radar. Repeat malware offenders are quite common as data available from Secure-D’s blocks reveals. Unchecked, these apps can create billions of dollars of fraudulent advertising revenue while seriously impacting consumers’ pockets and mobile service experience by eating up their data, incurring unwanted charges and affecting the performance of their phones.”

Upstream is advising Pixi4 Alcatel device owners to check their phones for unusual behavior. Users should regularly check their phones and remove any reported malware. They should also check their bills for unwanted or unexpected charges for accessing premium data services and to look out for signs of increased data usage which could indicate a malicious app is consuming data in the background. To help check for malicious mobile apps, Upstream launched the Secure-D Index earlier this year. A free-to-use malware detection center, the Secure-D Index lists suspicious mobile apps that the company has blocked around the world.

Secure-D is Upstream’s specialist solution used by operators to process mobile transactions and detect and block advertising fraud. Last year, the Secure-D platform processed more than 1.8bn transactions and found 30m consumer devices affected by some 63,000 malicious apps.

Guy Krief added: “The mobile advertising fraud market is worth some $40bn annually. Hiding within seemingly legitimate and often popular applications, undetected malware is damaging the industry’s reputation and leaving mobile operators and their consumers to pick up the tab. The scale of the problem can no longer be ignored, and security must become the mobile industry’s number one priority.”

[1] Subsequently the app was returned to the Google Play Store

-ENDS-

For the initial exposé of tct.weather by Secure-D, in January 2019, click here: https://www.upstreamsystems.com/secure-d-uncovers-pre-installed-malware-alcatel-android-smartphones-manufactured-tcl/

For more information please contact:
Chevaan Seresinhe
Sonus PR for Upstream, UK
E: upstream@sonuspr.com
P: +44020 3751 0330

Sofia Marinou
Upstream Corporate Communications
Ε: sofia.marinou@upstreamsystems.com
corp.comms@upstreamsystems.com
P: +30210 6618532 +30210 6618507

About Secure-D
Upstream’s security platform Secure-D combines machine learning algorithms with payment processing workflows to protect mobile operators and their subscribers against online transaction fraud and data depletion, caused by all types of malware and other online threats. In 2018 alone, Secure-D processed over 1.8 billion mobile transactions, detected and blocked over 63,000 malicious apps in 16 countries.

About Upstream
Upstream is a London based leading mobile technology company. Its pioneering product suite provides 1.2 billion people in developing countries with affordable and secure access to digital services on their mobile devices. Upstream’s Zero-D service provides free access to the internet essentials to 250 million mobile users in Latin America and Africa even when they have run out of data. Upstream works with over 60 mobile operators, across more than 45 high growth markets, leveraging their unique assets to boost and create new revenue streams in the data era.