
Your Google accounts could have been compromised if you have an Android phone, from a new malware known as “Gooligan.”
The malicious software has infected over 1 million accounts, according to research published on Wednesday by security firm Check Point, and this number is increasing by 13,000 devices per day.
In August, Gooligan emerged as a sophisticated malware that infects devices after users download apps from third-party stores. It was initially linked to a 2015 malicious app called SnapPea.
The malware steals authentication tokens, which can be used to access data from Google Play, Gmail, Google Docs, Google Drive and more. The malicious software installs certain applications on the user's phone. Its main mission is to install adware to generate revenue for these applications, which according to information reach $ 320.000 per month.

Check Point said that the hacked Google accounts are mostly located in Asia, but 19% are in North and South America and 9% in Europe. The malware appears to affect devices running Android 4 (also known as Jelly Bean and KitKat) and Android 5 (Lollipop).
To avoid infecting your device, you should only download apps from the official Google Play store. Check Point has created a website to check if your Google account has been compromised. If phone is already infected, things get a little more difficult. Check Point recommends installing a clean operating system on your phone. This is complicated, but it's best to turn off your device and seek professional help. Once your phone is fixed, be sure to change all your passwords.
Gooligan uses Google certifications in older Android versions to create fake app installations. «We have taken many measures to protect our users and improve the overall security of the Android ecosystem». The company has found no evidence that the hackers have access to user data.
