Security News > 2022 > October > Facebook Detects 400 Android and iOS Apps Stealing Users Log-in Credentials

Facebook Detects 400 Android and iOS Apps Stealing Users Log-in Credentials
2022-10-07 13:52

Meta Platforms on Friday disclosed that it had identified over 400 malicious apps on Android and iOS that it said targeted online users with the goal of stealing their Facebook login information.

42.6% of the rogue apps were photo editors, followed by business utilities, phone utilities, games, VPNs, and lifestyle apps.

Interestingly, a majority of the iOS apps posed as ads manager tools for Meta and its Facebook subsidiary.

Besides concealing its malicious nature as a set of seemingly harmless apps, the operators of the scheme also published fake reviews that were designed to offset the negative reviews left by users who may have previously downloaded the apps.

The apps ultimately functioned as a means to steal the credentials entered by users by displaying a "Login With Facebook" prompt.

As always with apps like these, it's essential to exercise caution before downloading apps and granting access to Facebook to access the promised functionality.


News URL

https://thehackernews.com/2022/10/facebook-detects-400-android-and-ios.html

Related vendor

VENDOR LAST 12M #/PRODUCTS LOW MEDIUM HIGH CRITICAL TOTAL VULNS
Facebook 30 2 44 52 19 117
Android 4 0 17 2 0 19