A large-scale social engineering campaign called FriendlyDealer has been identified operating across 1,500+ domains that impersonate the Google Play Store and Apple App Store. The campaign uses a single reusable kit that detects the user's device and displays a convincing fake app store page, then tricks users into installing

10m read timeFrom securityboulevard.com
Post cover image
Table of contents
One kit, dozens of apps, built to mimic real app storesYou’re not installing an appOne domain ties it all togetherFollow the money: affiliate commissions, not malwareWho’s behind this?A familiar trick with a different payoffWhat to do if you installed one of these appsIndicators of Compromise (IOCs)

Sort: