2019-6-17 15:43 |
Malicious apps impersonating Turkish cryptocurrency exchange BtcTurk are circumventing Google’s recently adopted security enhancing measures. According to researchers, the apps are accessing one-time passwords (OTPs) and SMS-based two-factor authentication (2FA), was well as some email-based 2FA systems.
By impersonating the cryptocurrency exchange, the apps are able to phish for users’ login credentials. Instead of intercepting SMS messages to bypass 2FA protection on users’ accounts and activity, the malicious apps take the OTP from notifications appearing on the comprised device’s display. Worryingly, besides being able to read the 2FA notifications, the apps are also to dismiss them, meaning victims are unable to notice…
This story continues at The Next Web
Or just read more coverage about: Google Play,Google
.
Similar to Notcoin - Blum - Airdrops In 2024