Scammers Are Using Fake Wallet Apps To Stealing Crypto Funds From Chinese

Share This Post





Cybersecurity researchers at ESET have uncovered a mobile wallet app scam that targets Chinese users. According to the researchers, the scammers created fake iOS and Android digital wallet apps to redirect cryptocurrency funds. The bogus apps are designed to look genuine, making it easier for users to fall prey to the scam. The hackers made sure that the fake apps they created function exactly like the originals to make them look more convincing.

The Scammers Are Impersonating Major Apps

The malicious apps impersonated companies like TokenPocket, MetaMask, imToken, Trust Wallet, and Coinbase to steal victims’ secret seed phrases.

The scammers recruited intermediaries through Facebook groups and Telegram to deceive their targets into downloading the app. These fake wallet services were promoted through counterfeit wallet websites targeting most Chinese users, according to the researchers.

The cybersecurity team revealed that its investigation about the scammers started in May 2021. It revealed that a single individual group is responsible for the campaign. The scammer created “trojan horse” wallet services that impersonated the functionality of genuine applications.

They incorporated malicious code used for redirecting crypto-assets into the fake app. However, the scammers place the malicious code in the app in an area where they will circumvent security software. As a result, they can stay hidden within the victim’s system for a long time without being discovered.

The Malicious App Also Poses A Secondary Threat

The malicious app is also dangerous in other aspects, as they are capable of sending seed phrases to the C2 server of the attacker using an unsecured HTTP connection. It means that apart from the primary threat, other cybercriminals could get hold of the code, which represents a secondary threat.

This means that users can suffer multiple attacks not only by the original scammer but by other different attackers eavesdropping on the same network. The researchers also said they discovered 13 malicious apps on the Google Play store that imitate the Jaxx Liberty wallet.

Your capital is at risk.

Read more:

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

UBS Predicts ‘No Landing’ for US Economy — What It Means for Markets and Inflation

Global investment bank UBS is forecasting a “no landing” scenario for the US economy, where growth continues and inflation remains stable, defying predictions of recession With

Shiba Inu To Double? Analyst Predicts 200% Price Hike – Details

Although flying under the radar concerning price movements during Bitcoin’s recent bull run, the dog-themed cryptocurrency Shiba Inu (SHIB) was able to appreciate 818% in the last week while

Going Crypto: Putin Reveals BRICS’ Shift Toward Digital Currency In Investment Strategy

Adopting crypto has been one of the key discussions among BRICS member states in a business forum held in Moscow on Friday The BRICS (Brаzil, Russiа, Indiа, Chinа, аnd South Africа) bloc seeks

Russia Vows to Launch Domestic Payment System to Render Western Sanctions Obsolete

Russia is determined to create a domestic payment system to conduct trade and international transactions free from current disruptions Mikhail Mishustin, Prime Minister of Russia, stated that this

Bitcoin Powers Wealth: Nearly 50% Of Crypto Millionaires Owe Success To BTC

Between 2023 and 2024, the number of Bitcoin millionaires climbed by almost 111%, reaching 85,400 or 496% of all crypto millionaires in 2024 Regarding cryptocurrency billionaires, five of the six

FLOKI Breaks Out Of Downtrend: Analyst Predicts 200% Rally To New All-Time High

Meme coin FLOKI has also benefited from recent inflows into the crypto markets, which has left many cryptocurrencies posting gains in both the 24-hour and seven-day timeframes  Notably, this inflow