Công nghệ

Android application contains malicious code to steal Facebook accounts

Google Play has removed an app with more than 100,000 downloads after it received a warning that it could steal users’ Facebook credentials.

The app is called Craftsart Cartoon Photo Tools, it’s an app that edits photos into drawings or cartoon characters. Researchers at French mobile security company Pradeo say the app contains malware called “Facestealer,” which tricks victims into filling out Facebook logins into a website.

Android application contains malicious code to steal Facebook accounts

According to Pradeo, the app contains some codes that make it easy to bypass Google Play’s protections. After you download the app, it will quickly ask to log in to Facebook. Users have no doubt that this is necessary to “experience the full functionality” of the application, but when opening the app, there are no photo editing features.

After stealing Facebook accounts, bad guys will use the collected information to access credit cards or user chats and searches, perform financial frauds, send links scam and spread fake news.

According to the study, Craftsart Cartoon Photo Tools sends data to a domain address registered in Russia. This domain was used continuously for 7 years and connected with many malicious mobile apps available on Google Play and then removed.

Immediately after receiving the information, Google immediately removed the app from Google Play, although more than 100,000 Android users had downloaded the app before.

In December, Pradeo warned about the Joker malware being distributed on the Play Store with more than 500,000 users installed. That malicious app defrauds users through unwanted advertising and mobile services.

If you are using this app then remove it from your devices immediately to keep your credit card, other financial data and personal information safe. You should also check the active sessions on your Facebook account to see if anyone else is logged in.

Also, carefully read user reviews and ratings before downloading any app.

Huong Dung(According to BRG, ZDNet)

You are reading the article Android application contains malicious code to steal Facebook accounts
at Blogtuan.info – Source: vietnamnet.vn – Read the original article here

Back to top button