New malware targets users on App Store and Google Play

NGUYỄN ĐĂNG |

Experts have just discovered a new type of malware called SparkKitty, designed to attack smartphones using iOS and Android operating systems.

Regarding the attack method, after the malware has entered the user's phone, it sends images and device information from the infected phone to the attacker's server. SparkKitty is installed in apps with content related to cryptocurrency, gambling, as well as in a fake version of the TikTok app.

These applications are distributed not only through the App Store and Google Play, but also on fraudulent websites. According to experts' analysis, the goal of this campaign could be to steal cryptocurrency from users in Southeast Asia and China. Users in Vietnam are also at risk of facing a similar threat.

Kaspersky cybersecurity experts have sent notices to Google and Apple to handle the above malicious applications. Some technical details show that this new attack campaign is related to SparkCat - a Trojan that was discovered earlier.

SparkCat is the first malware on the iOS platform to have an integrated optical character recognition (OCR) modular to scan users' photobooks, steal screenshots containing passwords or phrases to restore cryptocurrency wallets.

On the App Store, this Trojan malware is disguised as a cryptocurrency-related application called " Economiccoin. In addition, on fraudulent websites designed to fake the iPhone App Store interface, cybercriminals also spread this malware under the cover of the TikTok application and some betting games.

On the Android operating system, attackers target users on both Google Play and third-party websites, by disguising malware as cryptocurrency-related services.

One example of a malware-infected application is SOEX - a messaging application with integrated cryptocurrency trading functions, with more than 10,000 downloads from the official store.

In addition, experts also discovered APK files ( Android application instalments, which can be installed directly without Google Play) of these malware-infected applications on third-party websites, which are believed to be related to the above attack campaign.

These apps are being promoted in the form of cryptocurrency investment projects. Notably, websites that distribute apps are also widely promoted on social networks, including YouTube.

To avoid becoming a victim of this malware, experts recommend that users take the following safety measures:

- If you have successfully installed one of the malware-infected apps, quickly remove the app from your device and do not reuse it until an official update is available to completely remove the malware feature.

- Avoid storing screenshots containing sensitive information in the photo library, especially images with code to restore cryptocurrency wallets. Instead, users can store login information in specialized password management applications.

- Set up trusted security software, for example, to prevent the risk of malware infection.

- When an application requires access to a photo library, users should carefully consider whether this permission is really necessary for the application's main functions.

NGUYỄN ĐĂNG
TIN LIÊN QUAN

Things to do as soon as a smartphone is infected with malware, self-made advertisements

|

Smartphones that are constantly advertising and install strange applications themselves are signs of malware. Early processing helps protect data and avoid losing control of personal devices.

malware steals data, leaks 2.3 million bank cards

|

According to an estimate from Kaspersky Digital footprint Intelligence, up to 2.3 million bank cards have been leaked on the dark web due to malware.

Apple and Google remove apps containing data-stealing malware

|

Apple and Google have removed apps containing data-stealing malware from their app stores.

Mr. Do Trong Hung becomes Secretary of the Party Committee of the Central Organizing Committee

|

Mr. Do Trong Hung - Member of the Party Central Committee, Deputy Head of the Central Organization Committee - was elected Secretary of the Party Committee of the Central Organization Committee for the 2025-2030 term.

Comprehensive development of Vietnamese culture and people in the new era of the nation

|

Minister Nguyen Van Hung emphasized the spirit of "Culture is the foundation - Information is the conduit - Sports are the strength - Tourism is the bridge connecting".

Hanoi Police enter the National Cup final after defeating The Cong Viettel

|

On the evening of June 26, Hanoi Police Club defeated The Cong Viettel with a score of 3-1 to participate in the final of the 2024-2025 National Cup.

US launches Trump Documents after series of airstrikes on Iran

|

The US has just announced the Trump Documents after the military campaign in Iran, marking an important turning point in Washington's foreign policy.

Gasoline prices continue to increase, RON 95 gasoline surpasses 21,500 VND/liter

|

Gasoline prices increased simultaneously from 3:00 p.m. today (September 26), after adjustments by the Ministry of Industry and Trade - Ministry of Finance.

Things to do as soon as a smartphone is infected with malware, self-made advertisements

Cát Tiên (T/H) |

Smartphones that are constantly advertising and install strange applications themselves are signs of malware. Early processing helps protect data and avoid losing control of personal devices.

malware steals data, leaks 2.3 million bank cards

NGUYỄN ĐĂNG |

According to an estimate from Kaspersky Digital footprint Intelligence, up to 2.3 million bank cards have been leaked on the dark web due to malware.

Apple and Google remove apps containing data-stealing malware

TRÍ MINH (THEO techcrunch) |

Apple and Google have removed apps containing data-stealing malware from their app stores.