India Warns Against Fraudulent Adult Apps on Meta Platforms
The Ministry of Home Affairs of India warned Android users about malicious adult-themed apps on Facebook and Instagram that steal banking credentials and drain accounts.
The Ministry of Home Affairs of India issued a security advisory warning Android users against malicious applications disguised as pornographic services. These apps, including variants named Night Play, Reloop, Kyss, Vimo, Rivo, Nexo, and Vixa, are promoted through advertisements on Facebook and Instagram. The malware lures users to phishing websites to download APK files from external sources rather than the Google Play Store.
Once installed, the software requests sensitive accessibility permissions to gain remote control of the device. This allows attackers to capture one-time passwords and bank PINs, route internet traffic through attacker-controlled VPNs, and execute unauthorized financial transactions. Some versions of the malware are designed to be undeletable or masquerade as system updates to maintain persistent access.
In response to the government's findings, Meta removed dozens of flagged advertisements. However, reports indicate that some fraudulent ads remained active after the initial advisory and were only removed after being flagged by Reuters. The warning comes as India faces a surge in cyber-fraud, with losses reaching nearly $2.4 billion in 2025.
Authorities recommend that users install applications only from trusted stores and disable accessibility permissions for unknown software. Those affected are advised to use Safe Mode to uninstall the malicious apps and report incidents via the national helpline 1930 or the official government portal.