Rogue Gaming app that steals WhatsApp conversations.


Many of my friends ask me if it is possible to steal WhatsApp chat messages and how, of course a malware are an excellent answer to it.
Spreading the malware through an official channel the attacker could improve the efficiency of the attack,and it is exactly what is happening,an Android game that was published on the official Google Play store to stealthy steal users WhatsApp conversation databases and resell the collection of messages,images,video etc on an internet website.The game “Balloon Pop 2” has been identified and removed from Google Play store,it was able to spy on conversations made via WhatsApp and upload them to the WhatsAppCopy
website.On the website the Android game BalloonPop 2 is advertised as a way of backing up any device’s WhatsApp conversation.
The website managers sustain that their app is a legitimate game that could be used to back up
WhatsApp messages and they aren't responsible for its abuse for spying purposes.
The attacker paying a fee could view the stolen WhatsApp conversations from the website but it is necessary to provide the phone number
of the targeted Android device to read the messages exchanged by the victims.
Despite of being immediately removed from the Google Play
store there is risk that people with ill-intention will continue to distribute it through unofficial channels.
The risk is on a higher side as people are less concerned about the security of their smartphones than their computing devices.And lack of defense mechanisms on almost every device make them a privileged target,the number of malicious code designed for Android and iOS will literally explode in coming days.
There are many unidentified rogue app on play store still to be discovered and the fact that an app published on official store isn't sufficient to consider it reliable and secure,
same consideration is valid for other mobile platforms.

No comments: