The trojan apps were discovered by the digital security platform Dr. Web as researchers from the firm shareda detailed reporton the same. As per the report, the trojans used a special mechanism to acquire Facebook credentials, including passwords, of users. Then, they sent the acquired data to the attackers’ servers. The report also suggests that the apps stole cookies from the current authorization session to send them to perpetrators.
Apps That Stole Facebook Passwords
The researchers recognized five malware variants integrated into these apps. Amongst these, three of them were native Android apps, while the remaining two used Google’s Flutterwork framework that is developed for cross-platform compatibility.
Coming to the apps in question,more or less every one of them had over 100,000 downloads. The majority of the downloads were for an app named “PIP Photo”, which boasted 5.8 million downloads on the Play Store. The second-most downloaded trojan app was “Processing Photo”, which had more than half a million downloads.Image Courtesy: Dr. Web
The other compromised apps wereRubbish Cleaner(100,000+ downloads),Horoscope Daily(100,000+ downloads),Inwell Fitness(100,000+ downloads),App Lock Keep(50,000+ downloads),Lockit Master(50,000+ downloads),Horoscope Pi(1,000+ downloads), andApp Lock Manager(10+ downloads).
After Dr. Web published the report, labeling these apps as trojans, Google was quick to remove all the apps from the Play Store. Moreover, a company spokespersonreportedtoArs Technicathat all developers of these apps were banned from publishing apps on the Play Store.
If you downloaded any one of these apps on your device, we recommend you remove it right away and change your Facebook password immediately. Then you can go to “have i been pwned?” website tocheck if your Facebook credentials were compromisedor not.
Bringing the latest in technology, gaming, and entertainment is our superhero team of staff writers. They have a keen eye for latest stories, happenings, and even memes for tech enthusiasts.