TLDR
Fake Banking App Updates Hide NFCShare Malware A new wave of NFCShare Android malware is being distributed through repositories on GitHub that impersonate updates for legitimate banking apps. Unsuspecting users searching for app updates or...
Como funciona
Fake Banking App Updates Hide NFCShare Malware A new wave of NFCShare Android malware is being distributed through repositories on GitHub that impersonate updates for legitimate banking apps. Unsuspecting users searching for app updates or...
Señales de alerta
- Banking app update offered via GitHub link or APK download rather than the Google Play Store or your bank's official site Permissions request that includes NFC access on an app that has no business reading your contactless card data New or unknown repository asking you to enable "Install unknown apps" before the install can proceed
Qué hacer
- 1Red flags Banking app update offered via GitHub link or APK download rather than the Google Play Store or your bank's official site Permissions request that includes NFC access on an app that has no business reading your contactless card data New or unknown repository asking you to enable "Install unknown apps" before the install can proceed What to do Only update banking apps through the Google Play Store or your bank's verified website Never enable installation from unknown sources just to install a single update If you already sideloaded a suspect APK, uninstal
Fuente
bleepingcomputer
Fuente verificada por Mythos Forensic Team
https://www.bleepingcomputer.com/news/security/nfcshare-android-malware-spreads-via-fake-banking-app-updates-on-github/FAQ
Es Android NFCShare malware spreads as fake banking app updates on GitHub una estafa real?
Si. Trata el mensaje, la llamada o la solicitud de pago como sospechosos hasta que los verifiques por un canal oficial.
Cuales son las primeras senales?
Banking app update offered via GitHub link or APK download rather than the Google Play Store or your bank's official site Permissions request that includes NFC access on an app that has no business reading your contactless card data New or unknown repository asking you to enable "Install unknown apps" before the install can proceed
Que debo hacer primero?
Red flags Banking app update offered via GitHub link or APK download rather than the Google Play Store or your bank's official site Permissions request that includes NFC access on an app that has no business reading your contactless card data New or unknown repository asking you to enable "Install unknown apps" before the install can proceed What to do Only update banking apps through the Google Play Store or your bank's verified website Never enable installation from unknown sources just to install a single update If you already sideloaded a suspect APK, uninstal
Puede LegalAudit revisar mi caso?
Si. Abre el chat gratis y pega el mensaje, el enlace, el remitente o los datos de pago para un triage.