Security News > 2020 > June > Android Apps Stealing Facebook Credentials

Android Apps Stealing Facebook Credentials
2020-06-30 15:15

Before being taken down, the 25 apps were collectively downloaded more than 2.34 million times.

The malicious apps were developed by the same threat group and despite offering different features, under the hood, all the apps worked the same.

According to a report from French cyber-security firm Evina shared with ZDNet today, the apps posed as step counters, image editors, video editors, wallpaper apps, flashlight applications, file managers, and mobile games.

The apps offered a legitimate functionality, but they also contained malicious code.

Evina researchers say the apps contained code that detected what app a user recently opened and had in the phone's foreground.


News URL

https://www.schneier.com/blog/archives/2020/06/android_apps_st.html

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Facebook 30 2 44 52 19 117
Android 4 0 17 2 0 19