China-Linked Hackers Plant Fake Signal App on Google Play, Targeting Users' Data and Bank Accounts

TL;DR Summary
Researchers at cybersecurity company ESET have discovered a fake version of the private messaging app Signal on Google Play, which they believe is linked to a Chinese spy operation. The fake app, called Signal Plus Messenger, functioned the same as the legitimate version but secretly spied on users' communications by automatically connecting the compromised device to the attacker's Signal account. This is the first documented case of spying on Signal via secret "autolinking." The same hacking crew also created a malicious Telegram app called Flygram, targeting Uyghurs. While Google removed the fake apps, Samsung has not taken any action.
- A Fake Signal App Was Planted On Google Play By China-Linked Hackers Forbes
- New Android MMRat malware uses Protobuf protocol to steal your data BleepingComputer
- China-Linked BadBazaar Android Spyware Targeting Signal and Telegram Users The Hacker News
- This new Android malware can unlock your phone and drain your bank accounts Tom's Guide
- Trojanized Signal and Telegram apps on Google Play delivered spyware BleepingComputer
- View Full Coverage on Google News
Reading Insights
Total Reads
0
Unique Readers
6
Time Saved
2 min
vs 3 min read
Condensed
80%
493 → 99 words
Want the full story? Read the original article
Read on Forbes