deceptive practices

Winsage
April 14, 2026
Cybercriminals are using sophisticated tactics to deceive users, particularly with a counterfeit website posing as a legitimate Windows 11 update. This site operates under the domain microsoft-update[.]support and is designed to trick individuals into downloading malware that compromises sensitive information. The site is written in French and mimics a genuine cumulative update for Windows 11, version 24H2, featuring a convincing KB article number and a blue download button. The malware is packaged as a Windows update using the WiX Toolset 4.0.0.5512 and is labeled "WindowsUpdate 1.0.0.msi," with properties that suggest it is from Microsoft. At the time of analysis, VirusTotal showed no detections for the malware, which conceals its harmful code within an Electron shell, making it difficult to identify. Users are advised to download updates directly through the Windows Settings app or from Microsoft's official support hub.
AppWizard
April 1, 2026
Recent investigations into the Google Play Store have revealed that a small group of developer networks is dominating the cast-to-TV and screen mirroring category, operating over 280 apps under deceptive accounts with a total of 1.8 billion installs. Users have reported that many of these apps do not function as advertised, displaying uncloseable ads, charging for "free trials," and promoting high weekly subscription fees. Key problematic networks identified include: - iKame/Begamob (Vietnam): Manages over four accounts and more than 130 apps, with approximately 1.5 billion installs. - MaxLabs (Hong Kong): Operates eight developer accounts with various app names. - Package ID ai.chatbot.alpha.chatapp: Originally an AI chatbot, now rebranded as a casting tool. - Nice – Polska Sp. z o.o.: Claimed to be a UK shell company run by an individual in Pakistan. - Incube Technologies (Pakistan/UAE): Offers app store optimization services under the name “SwiftBiz Apps.” Google is currently investigating these allegations and has stated that it will take appropriate action against apps violating its policies.
AppWizard
December 20, 2025
NGL was acquired by Mode Mobile, a company that monetizes user engagement through advertisements. NGL gained popularity in late 2021 but faced controversy for fostering bullying and employing questionable growth hacking strategies, including sending automated misleading messages. The FTC banned NGL's availability to minors after a two-year investigation and fined the app million for deceptive practices. Following the acquisition, the remaining three employees of NGL will join Mode Mobile. Mode Mobile has developed the “EarnPhone,” which allows users to earn money through everyday activities but relies heavily on advertising revenue. The specific terms of the acquisition are undisclosed.
AppWizard
October 2, 2025
ESET researchers have identified two Android spyware campaigns, Android/Spy.ProSpy and Android/Spy.ToSpy, targeting users of secure messaging apps like Signal and ToTok. These spyware families are distributed through deceptive websites and social engineering tactics, requiring manual installation from unofficial sources. The ProSpy campaign, operational since 2024, uses fraudulent websites to distribute malicious APKs disguised as a Signal Encryption Plugin and ToTok Pro, particularly targeting users in the UAE. The ToSpy campaign, discovered in June 2025, also targets users in the UAE, utilizing fake distribution sites impersonating the ToTok app. Both spyware types request access to contacts, SMS messages, and files, exfiltrating sensitive data in the background. ESET advises users to be cautious when downloading apps from unofficial sources.
AppWizard
September 27, 2025
Concerns about the impact of video gaming on mental health include increased anxiety, depression, eye strain, and obesity. Certain popular games like Minecraft and Fortnite may expose children to gambling-related behaviors through features such as loot boxes, which can influence young minds and predispose them to gambling. Young men are particularly at risk due to the development of their prefrontal cortex, with a recent poll showing that 10% of men aged 18 to 30 exhibit signs of a gambling problem compared to 3% in the general population. The Entertainment Software Rating Board has introduced a warning label for games with gambling-like features, but critics argue this is insufficient. Epic Games settled with the Federal Trade Commission for million over allegations of deceptive practices related to loot boxes. Parents are advised to avoid normalizing gambling, monitor competitive behavior, watch for financial red flags, be vigilant about gaming habits, and observe changes in attitude in their children.
Winsage
July 31, 2025
Opera has lodged a formal complaint against Microsoft with Brazil's anti-trust authority, CADE, alleging unfair practices that favor Microsoft's Edge browser over competitors. The complaint claims Microsoft influences PC manufacturers to pre-install Edge as the default browser and employs "manipulative design tactics" that make it difficult for users to switch to other browsers. Opera highlights issues such as intrusive banners discouraging downloads of alternative browsers and automatic redirection to Edge for PDFs and email links. Opera is urging regulators to stop these practices and implement a fair browser selection screen. Previous attempts to classify Edge as a gatekeeper under the Digital Markets Act were unsuccessful.
Winsage
July 30, 2025
A 2024 report commissioned by Mozilla alleges that Microsoft employs misleading user interfaces and advertising tactics to promote its Edge browser, disadvantaging third-party browsers like Firefox. Mozilla has called for regulatory intervention against these practices. The European Commission designated Microsoft's services—Bing, Windows, LinkedIn, and Edge—as "gatekeeper services" in 2024, giving Microsoft six months to comply with the Digital Markets Act (DMA) or face fines. Microsoft contends that Edge and Bing do not qualify as gatekeepers and were exempted from DMA regulation after an investigation. Opera has filed a complaint against Microsoft in the EU Courts, which may prompt a reevaluation of Edge’s status under the DMA. In response to regulatory changes, Microsoft announced measures in June to align Windows 11 with DMA requirements, including reducing the emphasis on its own applications like Edge.
Winsage
June 26, 2025
Microsoft veteran Raymond Chen recounted issues during the development of Windows 9x, particularly regarding software copyright violations among PC manufacturers. The Windows 95 team aimed to ensure compatibility with various PCs, discovering a BIOS string "Not Copyright Fabrikam Computer" while examining firmware. In the early 1990s, branded PCs often had preinstalled software that unlocked premium features based on specific BIOS strings. Some manufacturers, like the fictional "Contoso," manipulated these strings to bypass licensing fees, which was likely illegal. The developers faced challenges retrofitting Plug and Play technology onto older systems while navigating these deceptive practices.
AppWizard
May 10, 2025
A sophisticated ad fraud scheme called Kaleidoscope is affecting over 2.5 million Android devices each month, with India accounting for 20% of the total impacted devices. Other countries experiencing the effects include Brazil, Indonesia, and the Philippines. The scheme spreads through unofficial app stores and direct download links shared on social media and messaging platforms.
Search