Scammers Are Using Fake Wallet Apps To Stealing Crypto Funds From Chinese

Share This Post





Cybersecurity researchers at ESET have uncovered a mobile wallet app scam that targets Chinese users. According to the researchers, the scammers created fake iOS and Android digital wallet apps to redirect cryptocurrency funds. The bogus apps are designed to look genuine, making it easier for users to fall prey to the scam. The hackers made sure that the fake apps they created function exactly like the originals to make them look more convincing.

The Scammers Are Impersonating Major Apps

The malicious apps impersonated companies like TokenPocket, MetaMask, imToken, Trust Wallet, and Coinbase to steal victims’ secret seed phrases.

The scammers recruited intermediaries through Facebook groups and Telegram to deceive their targets into downloading the app. These fake wallet services were promoted through counterfeit wallet websites targeting most Chinese users, according to the researchers.

The cybersecurity team revealed that its investigation about the scammers started in May 2021. It revealed that a single individual group is responsible for the campaign. The scammer created “trojan horse” wallet services that impersonated the functionality of genuine applications.

They incorporated malicious code used for redirecting crypto-assets into the fake app. However, the scammers place the malicious code in the app in an area where they will circumvent security software. As a result, they can stay hidden within the victim’s system for a long time without being discovered.

The Malicious App Also Poses A Secondary Threat

The malicious app is also dangerous in other aspects, as they are capable of sending seed phrases to the C2 server of the attacker using an unsecured HTTP connection. It means that apart from the primary threat, other cybercriminals could get hold of the code, which represents a secondary threat.

This means that users can suffer multiple attacks not only by the original scammer but by other different attackers eavesdropping on the same network. The researchers also said they discovered 13 malicious apps on the Google Play store that imitate the Jaxx Liberty wallet.

Your capital is at risk.

Read more:

Read Entire Article
spot_img
- Advertisement -spot_img

Related Posts

FLOKI Breaks Out Of Downtrend: Analyst Predicts 200% Rally To New All-Time High

Meme coin FLOKI has also benefited from recent inflows into the crypto markets, which has left many cryptocurrencies posting gains in both the 24-hour and seven-day timeframes  Notably, this inflow

Stripe Acquires Stablecoin Platform Bridge in Record $1.1 Billion Crypto Deal

Payments company Stripe has acquired stablecoin platform Bridge in a $11 billion transaction, marking the largest acquisition in the crypto industry to date Techcrunch founder Michael Arrington

Farm, Craft, and Thrive in My Neighbor Alice

Follow Regina in her journey down the rabbit hole that is My Neighbor Alice Will she find a wonderful land, or will it be a bore Read on to find out Last episode’s quick recap I’m still

Vitalik Buterin lays down roadmap to minimize centralization risk in Ethereum POS design

Ethereum co-founder Vitalik Buterin believes that the centralization of proof-of-stake (POS) poses a significant threat to Ethereum POS centralization is where large stakers dominate and small

Dogecoin Breaks Above $0.12 Level – Time For DOGE To Catch Up?

Dogecoin (DOGE) has finally broken through the crucial $012 resistance level, marking a significant milestone as it surges to catch up with the broader crypto market rally After weeks of struggling

Bitcoin’s Market Dominance Soars To 3-Year High – Is This The End Of Altcoin Season?

Bitcoin and many other cryptocurrencies have been on significant price increases in the past few weeks Bitcoin, in particular, has been inching close to its all-time high, and the recent break above