Big Google warning over 12 popular Android apps caught stealing bank details

Big Google warning over 12 popular Android apps caught stealing bank details

A WARNING about criminal Google Play apps that can hack your bank account has been issued by online experts.

That urgent message warns of scary Android apps that have been downloaded over 300,000 times.

The apps will appear like real software – before they hijack your system

3

The apps will appear like real software – before they hijack your systemCredit: ThreatFabric
Apps would silently install small malware updates over time, bypassing Google's controls

3

Apps would silently install small malware updates over time, bypassing Google’s controlsCredit: ThreatFabric

These apps are known as banking trojans – designed to log your keystrokes when accessing your accounts.

Hackers will create these apps to look like PDF or QR code scanners, exercise guides, or cryptocurrency wallets.

But instead, they would read your bank passwords, login codes and even take silent screenshots.

Cyber ​​experts at ThreatFabric revealed the sinister hack attack, describing it as highly sophisticated.

“Policing by Google has forced actors to find ways to significantly reduce the footprint of dropper apps,” ThreatFabric explained.

“By introducing carefully planned small malicious code updates over an extended period of time into Google Play.”

The apps used four different “families” of malware to hijack user logins.

And they used clever methods to bypass Google’s usual checks to prevent malware from making its way to Android’s official App Store.

This allowed the hackers to quickly scale up their campaign.

“In just four months, four major Android families were spread via Google Play, resulting in 300,000+ infections via multiple dropper apps,” ThreatFabric said.

The apps would appear harmless at first, but then deliver updates to introduce dangerous malware over time.

Cyber ​​experts also warn that the malware was so sophisticated that even virus detectors struggled to detect its nefarious actions.

See also  Over 1,800 Android and iOS apps have been found to leak hardcoded AWS credentials

List of dangerous Android apps

Here is the list of apps exposed by ThreatFabric…

  • Two Factor Authentication – com.flowdivision
  • Protection Guard – com.protectionguard.app
  • QR CreatorScanner – com.ready.qrscanner.mix
  • Master Scanner Live – com.multifunction.combine.qr
  • QR Scanner 2021 – com.qr.code.generate
  • QR Scanner – com.qr.barqr.scangen
  • PDF Document Scanner – Scan to PDF – com.xaviermuches.docscannerpro2
  • PDF Document Scanner – com.docscanverifier.mobile
  • PDF Document Scanner Free – com.doscanner.mobile
  • CryptoTracker – cryptolistapp.app.com.cryptotracker
  • Fitness & Exercise Trainer – com.gym.trainer.jeux
  • Gym and Fitness Trainer – com.gym.trainer.jeux (reupload)

If any of these apps are installed on your Android phone, it is worth deleting them immediately.

You should also consider changing your bank passwords and checking your accounts for strange behavior.

The dubious malware started appearing in Google Play Store apps around August 2021

3

The dubious malware started appearing in Google Play Store apps around August 2021Credit: ThreatFabric

Best Phone and Gadget Tips and Hacks

Looking for tips and hacks for your phone? Want to find the secret features of social media apps? We’ve got you covered…

WhatsApp ‘dark mode’ FINALLY launches on iPhone and Android – how to get it

In other news, Google Chrome users have been urged to delete the browser.

Facebook recently changed to Meta.

Check out the best iPhone 13 deals in October 2021.

And take a look at your hidden Facebook reject folder.


We pay for your stories! Got a story for The Sun Online Tech & Science team? Email us at [email protected]


You may also like...

Leave a Reply

Your email address will not be published. Required fields are marked *