- Researchers discovered new cryptocurrency-stealing malware named clipper on Google Play Store.
- The malware was discovered impersonating a legitimate service called MetaMask.
- The malware is capable of stealing credentials and private keys
- Google has removed the app from the play store
Security researchers have discovered a new strain of cryptocurrency-stealing malware named clipper on Google Play Store.
The malware was discovered by
The Metamask is a browser extension which allows you to run Ethereum Apps in your browser without running a full Ethereum node.
The malware aims to steal credential and private keys to gain control over the victim’s Ethereum funds.
The malware is also capable of replacing Bitcoin or Ethereum wallet of users copied to the clipboard with the one belonging to the attacker.
In order to make transaction users needs to enter the recipient’s wallet address in the app.
Usually, instead of manually typing these long and complicated addresses, most of the users will copy and paste them.
The clipper monitors system clipboard, once it detects values look like a target address it replaces it with the address belonging to the attacker. This way the clipper is also capable of stealing users credential and private key whenever they are copied to the clipboard.
Researchers discovered the malicious app on February 1 and reported it to the Google security team, who removed the app from the Play Store immediately.
Always follow these basic steps to prevent your smartphone from infection:
- Always switch off “Allow installation from unknown sources” in security settings thereby restricting download apps from a third party and anonymous sources.
- Don’t download attachments from unknown sources.
- Always Use google play store to install apps, don’t use any third party app stores.
- Download apps from verified developers and check their app rating and download counts before installing an app.
- Verify app permission before installing an app.
- Install the best and updated antivirus/anti-malware software which can detect and block these type of malware.
- Always keep play protection ON
- Always keep your device OS and apps up to date.
You may be interested in reading:Several Photo Editing Apps Found Stealing Users Photos