Manipulate App Store Rankings or Ratings

An adversary could use access to a compromised device's credentials to attempt to manipulate app store rankings or ratings by triggering application downloads or posting fake reviews of applications. This technique likely requires privileged access (a rooted or jailbroken device).

ID: T1452

Tactic Type:  Post-Adversary Device Access

Tactic: Effects

Platform:  Android, iOS

Version: 1.0



BrainTest provided capabilities that allowed developers to use compromised devices to post positive reviews on their own malicious applications as well as download other malicious applications they had submitted to the Play Store.[1]


HummingBad can create fraudulent statistics inside the official Google Play Store.[2]