FluHorse malware attacks Android phones stealing personal data including passwords

Home/Compromised, Data Breach, Exploitation, Internet Security, malicious cyber actors, Malicious extension, Malware, Mobile Security, Security Advisory, Security Update/FluHorse malware attacks Android phones stealing personal data including passwords

FluHorse malware attacks Android phones stealing personal data including passwords

A new Android malware named “FluHorse” has been discovered, targeting users in East Asia with malicious apps that mimic legitimate versions.

According to Check Point Research, these malicious apps are designed to extract sensitive information, including user credentials and Two-Factor Authentication (2FA) codes.

FluHorse malware : How its distributed?

According to the report, FluHorse attacks start with targeted and malicious emails sent to high-profile individuals, urging them to take immediate action to resolve an alleged payment issue.

Usually, the target is directed to a phishing website through a hyperlink included in the email. Once there, they are prompted to download the phoney APK (Android package file) of the fake application.

Moreover, the email lures serve as an effective social engineering tactic and are consistent with the supposed intent of the malicious APK (like paying tolls) installed afterward.

To achieve the objective, assessing Flutter-based applications requires intermediate steps compared to analyzing pure Android apps.

Mitigation Steps:

  • Disable applications that have administrator privileges
  • Reset the system to its default state
  • Install the latest software updates
  • Check the data usage of various applications
  • Check the battery usage of various applications

Follow Us on: Twitter, InstagramFacebook to get the latest security news!

About the Author:

FirstHackersNews- Identifies Security

Leave A Comment

Subscribe to our newsletter to receive security tips everday!