Researchers from McAfee have identified 280 counterfeit Android apps designed to infiltrate cryptocurrency wallets. These malicious apps exploit vulnerabilities by scanning devices for images containing mnemonic phrases used for account recovery. They masquerade as legitimate services and use phishing tactics to trick users into downloading them. Once installed, the apps can access sensitive information, including:
- Contacts: Extracting the entire contact list.
- SMS Messages: Capturing all incoming SMS messages, including two-factor authentication codes.
- Photos: Uploading stored images to attackers' servers.
- Device Information: Collecting details about the device, such as operating system version and phone numbers.
McAfee emphasizes the importance of vigilance and recommends that users exercise caution when installing applications and granting permissions. They also highlight the necessity of security software to protect personal devices from such threats.