These dangerous apps were imitating trusted crypto wallets like Hyperliquid, PancakeSwap and Raydium. According to the report, users were fraudulently forced to enter their 12-word mnemonic phrase, allowing the attacker to access their real crypto wallets.
A shocking cybersecurity report has revealed that more than 20 fake apps have been found on Google Play Store that were targeting cryptocurrency wallet users. These dangerous apps were imitating trusted crypto wallets like Hyperliquid, PancakeSwap and Raydium. According to the report, users were fraudulently forced to enter their 12-word mnemonic phrase, allowing the attacker to access their real crypto wallets.
What does the report say?
Cybersecurity research organization Cyble Research and Intelligence Labs (CRIL) has identified more than 20 phishing apps on Google Play Store. These apps used the same names and descriptions as the real crypto wallet apps, but were published through different developer accounts. Many of these developer accounts were hacked or repurposed, which were previously being used for apps related to gaming, live streaming and video downloads.
How did these apps cheat?
These apps tried to make themselves look real by hiding command and control (C&C) links in the privacy policy URLs. The attackers converted the websites into Android apps using the Median framework.
As soon as the user installed and opened the app, he was redirected to a link that looked like a privacy policy, which was a phishing website. There he was asked to enter a 12-word mnemonic phrase through WebView, which allowed the attackers to gain control of his real wallet.
Links to over 50 phishing domains
The report also stated that these fake apps were linked to over 50 phishing websites, indicating a large cybercrime network. The researchers also listed the package names and privacy policy URLs of these apps that were present on the Play Store.
Warning for users
- Before installing any crypto wallet app, check its developer name and reviews thoroughly.
- Never enter your 12-word mnemonic phrase on any app or website.
- Download apps only from official websites or trusted sources.
- Use Android security settings and antivirus tools.
fake crypto app names:
- Pancake Swap
- Suite Wallet
- Hyperliquid
- Raydium
- Hyperliquid
- Bulix Crypto
- OpenOcean Exchange
- Suite Wallet
- Meteora Exchange
- Raydium
- SushiSwap
- Raydium
- SushiSwap
- Hyperliquid
- Suite Wallet
- Bulix Crypto
- Harvest Finance blog
- Pancake Swap
- Hyperliquid
- Suite Wallet