In short
A malicious Android app abuses accessibility permissions to gain persistent or extensive device control The objective is typically to take control of the device, steal data/authentication and facilitate financial fraud.
What it is
The app may appear legitimate or be installed through a scam/social-engineering flow. The victim is then pushed to install the app and grant accessibility/device permissions.
How it starts
A malicious Android app abuses accessibility permissions to gain persistent or extensive device control.
What they tell you
The app may appear legitimate or be installed through a scam/social-engineering flow
What they want you to do
Install the app and grant accessibility/device permissions
How you lose money
take control of the device, steal data/authentication and facilitate financial fraud
What happens next
After the first successful step, the fraudster may demand more money/information, deepen account or device access, or disappear.
Warning signs
trust | urgency | convenience | APK sideloading | accessibility abuse | device takeover
Where this is documented
India — officially documented by an Indian authority/regulator
How to avoid it
Do not sideload unknown apps/executables/extensions or grant accessibility/screen-sharing permissions to unverified parties; update and scan the device.
If it already happened
Contact the bank/payment provider immediately if money moved; report financial cyber fraud promptly via 1930 and cybercrime.gov.in; preserve messages, transaction IDs, phone numbers and URLs. From a clean device, revoke sessions, change credentials and review account recovery/security settings.