Safe Banking

Avoid Android Fraud: Suspicious Apps & APKs

3 min read
May 6, 2023
Avoid Android Fraud: Suspicious Apps & APKs

Android is the most popular mobile operating system globally and an attractive target to attackers worldwide due to its open-source nature and fragmentation (as the OS runs on devices manufactured by different companies with each manufacture tweaking the OS for its own convenience). Android ecosystem also allows users to install third party mobile applications and controls on Play Store are less stringent than App Store. All these factors make Android OS the perfect attack surface and make it possible for hackers to exploit user’s android device by making them install APK (Android Application Packages), or by trojanizing a legitimate application.
 

How it’s done:

1. Hackers first need to get the victims to install the malicious APKs on their mobile devices, for which hacker may employ social engineering tactics.
2. When the victim installs the APK by clicking on it, he/she may receive numerous warning messages on highlighting the dangers of installing apps from unknown sources. The victim can also see that the app is requesting a lot of permissions e.g., access to camera, microphone, location, contacts, SMS, etc.
3. Post installation, the hacker receives a connection on his hacking device, thus granting access and control of infected device with hacker to facilitate malicious actions.
 

Important Things to Remember (Red Flags)

  • To gain access to the victim’s phone the hacker will need to create a social engineering method to get the victim to install and launch the malicious APK. Fraudsters may trick victims to install APK file in pretext of resolving payment query, etc.
  • The generated APK file does not look legitimate and may be only a few KBs in size.  
  • Once the APK is installed it requests a lot of permissions e.g., cameras, microphone, location, contacts, SMS, etc. This is a big red flag and if the user has installed any such application, it must be uninstalled right away.
  • Such APK files are easily classified as dangerous if any antivirus is installed on the victim’s phone.
  • User must pay attention to the warnings from Google Play Store that installing application from unknown and unverified sources may harm the device.
  • Reboot the phone regularly and clear all the running apps in the background, so that the hacker loses connection.
 

Do’s

  • Ensure “Install from Unknown Sources” is disabled in phone settings.
  • Download trusted applications only from Google Play Store.
  • Install an effective mobile anti-malware/anti-virus software on your smartphone and keep it updated.
  • Always verify app permissions and grant only those permissions which have relevant context for the app’s purpose. If they seem too much, be on your guard (e.g., a flashlight app asking for access to your contacts, SMS, microphone, etc.).
  • Enable automatic OS updates or download updated OS security patches regularly.
  • Log out from online mobile banking or financial application as soon as you have completed your transactions. Also make sure you close the app window.
 

Don’ts

  • Never Download third-party apps on call request from unknown person even if caller claims to be a Bank representative/customer support representative.
  • Do not save Credit/Debit card image, PIN, Passwords, and other banking details on your mobile device.
  • Don't allow a stranger to guide you to install a mobile app through App Store / Play store or instruct you to change the setting of your mobile.
  • Do not use "jailbroken" or "rooted" devices for online banking. Jailbreaking or rooting a device (the process of breaking into the phone's built-in operating system to control it outside the vendor's original intention) exposes the device to additional malware and gains administrative or privileged access of OS.
  • Do not enable autofill or save user IDs or passwords for mobile banking online.
  • Avoid using unsecured Wi-Fi, public or shared networks. There may be rogue Wi-Fi access points at public places used for distributing malicious applications

How did you like this blog?

star star star star star

People with similar interests also read: