Google and Apple App Stores Face Legal and Financial Risks Over Security Breaches and Fraud

Google and Apple face mounting legal actions and regulatory pressure across India, the US, and Germany after security researchers uncovered over 200 malicious applications bypassing official vetting processes, accumulating more than 8 million downloads, and causing millions of dollars in financial losses for unsuspecting users.

International Legal Scrutiny Hits Google Executives in India

Judicial pressure on Big Tech is intensifying in international markets. In Hyderabad, India, authorities filed an official case against the Nodal Officer of Google India following a severe financial fraud incident. A public defense sector employee lost approximately 795.000 Indische Rupien through a fraudulent trading application titled GVS Institution, which was actively listed on the official Google Play Store.

The victim noted that the application’s presence on the official storefront served as the primary trust signal. Once installed, the malicious software displayed fabricated profits totaling millions, while systematically blocking all legitimate withdrawal requests. This legal action follows a pattern where the Google India chief has been named as a co-accused in several similar criminal proceedings across the country.

Google stated that it initiated internal investigations into the matter. According to the company’s internal reviews, only one of the flagged applications was ever hosted on the Play Store, and that specific listing allegedly adhered to all platform guidelines. Despite these claims, the police in Hyderabad announced plans for direct discussions with high-ranking Google executives regarding vetting procedures for financial and trading applications.

Parallel criminal investigations have targeted the infrastructure operators behind these scams. Law enforcement in Mumbai arrested a student suspected of developing nearly one thousand fraudulent APK files for criminal syndicates. Simultaneously, authorities in Bengaluru arrested another individual linked to a separate fake trading platform scheme that generated over 300 million Indian Rupees in total damages.

Apple Sued Over Fake Crypto Wallets Costing Millions

Three Bitcoin investors filed a class-action lawsuit against Apple after losing a combined rund 1,8 Millionen US-Dollar through a counterfeit version of the Sparrow-Wallet application downloaded directly from the official Apple App Store. Victims entered their cryptographic seed phrases into the rogue application, resulting in the immediate draining of their digital asset reserves.

The legitimate Sparrow-Wallet software is built exclusively for desktop operating systems, and its official developer had previously issued warnings regarding unauthorized mobile clones. Apple removed the malicious listings and terminated the offending developer accounts upon discovering the policy violations. However, the plaintiffs are pursuing financial damages, arguing that Apple’s app store review protocols were critically insufficient.

German Courts Expand Platform Liability for Fake Shopping Ads

European courts are similarly tightening the legal obligations of digital marketplace operators. The Starnberg Local Court in Germany handed down a ruling that significantly expands platform liability by holding Google financially responsible for malicious third-party advertisements. The court ordered Google to pay damages to a consumer who fell victim to a fraudulent e-commerce storefront promoted via a Google search ad.

The plaintiff ordered and paid for a bicycle carrier that was never delivered. Court documents established that Google should not have displayed the advertisement because the fraudulent shop had already been flagged and reported as a scam at the time the ad went live. Under the ruling, Google must reimburse the purchase price alongside all associated legal and court fees. Google is currently evaluating legal remedies against the decision.

Zscaler ThreatLabz Findings on Banking Malware Scale

Data compiled by Zscaler ThreatLabz between June 2023 and May 2024 uncovered more than 200 distinct malicious applications distributed through the Google Play Store, surpassing 8 million total downloads. The investigation highlighted a heavy concentration of sophisticated Android banking trojans, most notably the Anatsa malware family, which targets customers across more than 650 financial institutions worldwide.

Geographic distribution metrics indicate that India accounts for 28 percent of mobile malware incidents, securing the top spot globally, while the United States logs the highest volume of Internet of Things (IoT) cyberattacks.

Photo of author

Sophie Lin - Technology Editor

Sophie is a tech innovator and acclaimed tech writer recognized by the Online News Association. She translates the fast-paced world of technology, AI, and digital trends into compelling stories for readers of all backgrounds.

U.S. Flight Cancellations and Delays Force Morning Operations

Dubai Celebrates Empowerment of Emirati Musicians

Leave a Comment

This site uses Akismet to reduce spam. Learn how your comment data is processed.