Malware apps posing as free VPNs are on the rise

Cybersecurity firm Cleafy just issued a report warning against a rising malware called Klopatra, which infects personal devices by posing as a free VPN app called Mobdro Pro IP + VPN. This is the latest corroboration of a series of warnings delivered by Kaspersky security researchers in 2024 about the increasing number of malware apps pretending to be free VPNs — a warning that's more relevant than ever as VPN usage spikes in response to age-restriction laws.

Mobdro is the name of a popular IPTV app that's been taken down by the Spanish government at least once, but the Mobdro Pro IP + VPN app appears to be unrelated, piggybacking on the name to use it as a malware vector. If you download the app, it guides you through what appears to be an installation wizard, but is actually the steps for handing over total control of your device. Once inside, Klopatra abuses accessibility services to pose as you, enter your banking apps, drain your accounts and assimilate your device into the botnet for further attacks.

Cleafy believes that Klopatra has already roped around 3,000 devices into its botnet, mainly in Italy and Spain. Its report concludes that the group behind Klopatra is probably based in Turkey, and is actively refining its approach, incorporating innovations and changing with the times. Hence the use of a combined cord-cutting and free VPN app as a mask — it's perfect for exploiting rising frustrations with both streaming balkanization and government clampdowns on web freedom.

According to Kaspersky, other free VPNs used as malware vectors in the past year include MaskVPN, PaladinVPN, ShineVPN, ShieldVPN, DewVPN and ProxyGate. With Klopatra's runaway success, Cleafy believes that imitators will spring up. App stores aren't always quick to take down implicated apps, so be very careful to vet any free VPN app before you download it. If you're not sure, you can always go with one of the free recommendations from our best VPN list (Proton VPN or hide.me).

This article originally appeared on Engadget at https://www.engadget.com/cybersecurity/vpn/malware-apps-posing-as-free-vpns-are-on-the-rise-175629088.html?src=rss

Read more @ Engadget

Latest posts

Steam store pages get a mini makeover to better suit wide screens

Store pages on Steam are looking a lot less cramped thanks to a new update. Pages have been made wider, with support for higher...

France vs South Africa free streams: How to watch Autumn International 2025, TV Channels, Team News & Preivew

Watch France vs South Africa free on TF1+ (France)Unlock your stream with NordVPN's Black Friday Deal (save 75%)France vs South Africa: Saturday, November 8...

A UK government department spent hundreds of millions upgrading its systems to Windows 10 – just in time for its official end of life

Defra's Windows 10 upgrade arrives after Microsoft's OS hit its end of lifeThousands of remaining devices struggle to meet even basic performance expectationsDefra’s estate...

I’ve been tracking camera prices all year: here are the genuine record-low prices for Canon, Sony, Nikon, and others this Black Friday

It may not be a surprise to hear that several retailers in the US are already holding massive seasonal sales this week. Although we're...

Black Friday savings start now: MSI’s 2TB Spatium M470 Pro SSD is already on sale priced at just £96.99

Can't wait for the Black Friday/Cyber Monday 2025 sales to kick in? If you’re shopping for fast, reliable storage, you don’t need to.The MSI...

Disney+ is giving its apps a visual revamp, for easier navigation and more personalization – here’s what’s new

Disney+ has announced an app interface revampThe look of the app is becoming more dynamicYou should also start to see improved recommendationsWhen you're one...

Grab the Amazon Fire HD 8 tablet for its lowest price yet ahead of Black Friday

Amazon's tablets are known for their affordability and tight integration with its first-party apps like Amazon Prime, Prime Video, and so on. If you're...

Microsoft built a fake online marketplace to see how its AI agents would work selling unsupervised – and let’s just say the results were…...

Microsoft’s Magentic Marketplace exposes AI agents’ inability to act independentlyCustomer-side agents were easily influenced by business agents during simulated transactionsAI agents slow down significantly...

After testing this NAS device, Ugreen might have cornered the market for personal cloud services with the NASync DH2300

Ugreen NASync DH2300: 30-second reviewFrom being a brand that only sold NAS in China a few years back, Ugreen has risen to compete with...

Soaring electricity rates fueled Democratic victories — now comes the hard part

Democratic candidate for Virginia governor Abigail Spanberger takes the stage during a election night event at the Greater Richmond Convention Center on November 4th...