6 million user data leaked

Google remove 9 apps from their google play store which is steal user facebook all personal information and send to their server through trozanised and all data already send to a black hat hacker u know the black hat hacker all work done for only financial profit so if your data will go in a black hat hacker hand then 99% chance he used your data for blackmailing you and demand for bitcoin . actully , you can’t believe but these apps used by 6 milion users and these apps  is a form of yoga apps , lock apps, photo editor and cleaner apps . and these apps steal your all information through trojen horse attack . Firstly we understand a point  trojen horse attack , in this type of attack a spyware comes into your system through some pop-up ads , SMS , email attachment files and if a spyware comes into your system then this store all your online activities , what u do if u are online on your facebook , whatsup and all data send to their server which is reached to black hat hacker .  we understand that how it works , let’s take a example you are fat and you wanted to fit your body at your home not used gym so if anybody wanted to fit then he needs a guider for their diet routine , meditation and yoga . so for this reason he install a app name inwell fitness app  for their guideness and after installation the process for sign-in and he take username , password and email id right , then all their email account information reached have a hacker , and the hacker used a another option , he used pop-up adds on their apps if a user click on their ads then fulfil those information which is asked by their site hackers have your some personal information right , then his next step is through your some information he prefered phishing attacks , social engineering attacks for gain the purpose of your all personal information . and if the hacker or black hat hacker have your information then they used your data for their financial profit .

so come to the point , mostly these 9 apps used pop-up ads for trojen horse attack and send user personal information to their server .

  • PIP Photo (>5,000,000 installs)
  • Processing Photo (>500,000 installs)
  • Rubbish Cleaner (>100,000 installs)
  • Horoscope Daily (>100,000 installs)
  • Inwell Fitness (>100,000 installs)
  • App Lock Keep (50,000 installs)
  • Lockit Master (5,000 installs)
  • Horoscope Pi (>1,000 installs)
  • App Lock Manager (10 installs)

In the last link of the attack, the stolen information was exfiltrated to the server using the trojanized applications.

Published by Ayushi kumari

Hey! i am interesting in tech , cyber security and reading books

Leave a comment

Design a site like this with WordPress.com
Get started