• These fake iOS apps just want to trick you out of your crypto

    From TechnologyDaily@1337:1/100 to All on Thu Feb 2 21:30:03 2023
    These fake iOS apps just want to trick you out of your crypto

    Date:
    Thu, 02 Feb 2023 21:20:20 +0000

    Description:
    Researchers are warning of scammers stealing cryptocurrency by posing as attractive, rich women.

    FULL STORY ======================================================================

    A known cryptocurrency fraud which leverages fake trading apps to trick
    people into giving away their hard-earned money made it past Apples strict security protocols and into its mobile app repository, researchers have warned.

    Apple has been alerted to the presence and quickly moved to eliminate the threats from the App Store - still, if you have downloaded these apps, make sure to remove them from your endpoints immediately.

    Cybersecurity researchers from Sophos have detailed two apps designed for so-called CryptoRom fraud. This type of fraud is quite simple - a trickster would create a fake social media account, assuming the identity of a rich, attractive woman. Then, theyd reach out to potential victims and after a little back-and-forth, trick them into downloading the fake trading apps, under the promise of riches and wealth. Fake QR code scanners

    People that would fall for the trick would think theyre making an investment, but would instead, just be parted with their money.

    The two apps in question are called Ace Pro and MBM_BitScan, and what makes these two stand out from the crowd of other CryptoRom apps is the fact that they made it past Apples security and into the App Store.

    One of the apps managed to bypass the protections by posing as a QR code scanner connected to a benign-looking website, but after a while, the developers redirected it to a domain registered in Asia, which ultimately delivers the fake trading interface. Read more

    Elon Musk isn't giving you crypto - it's a scam


    Crypto scammers are fighting amongst themselves over stolen funds


    Keep your identities safe with these best ID theft protection services

    The other app, MBM_BitScan, is also available on Googles Play Store, where
    its known as BitScan. These two apps were observed communicating with the
    same Command and Control infrastructure (C2), which further communicates with a server posing as a legitimate Japanese crypto firm. Everything else is handled in the web interface, which is how the crooks managed to trick Google into allowing the app in the first place.

    The best way to protect against such scams, the researchers are saying, is to use common sense, and if something looks like a scam, it most likely is. If
    an app cant be found on a legitimate repository, or requires extra steps to
    be used, that should raise a red flag with the users. Stay protected online with these best firewalls



    ======================================================================
    Link to news story: https://www.techradar.com/news/these-fake-ios-apps-just-want-to-trick-you-out- of-your-crypto


    --- Mystic BBS v1.12 A47 (Linux/64)
    * Origin: tqwNet Technology News (1337:1/100)