• News
    • Tech News
    • AI
  • Gadgets
    • Apple
    • iPhone
  • Gaming
    • Playstation
    • Xbox
  • Science
    • News
    • Space
  • Streaming
    • Netflix
  • Vehicles
    • Car News
  • Social Media
    • WhatsApp
    • YouTube
  • Advertise
  • Terms
  • Privacy & Cookies
  • LADbible Group
  • LADbible
  • UNILAD
  • SPORTbible
  • GAMINGbible
  • Tyla
  • FOODbible
  • License Our Content
  • About Us & Contact
  • Jobs
  • Latest
  • Topics A-Z
  • Authors
Facebook
Instagram
X
TikTok
Snapchat
WhatsApp
Submit Your Content
Android owners urged to delete software impersonating 'premium' version of app over fears it can read your messages and steal bank card info

Home> Gadgets

Published 10:37 10 Jan 2025 GMT

Android owners urged to delete software impersonating 'premium' version of app over fears it can read your messages and steal bank card info

Double check what you are downloading

Rebekah Jordan

Rebekah Jordan

google discoverFollow us on Google Discover

Our smartphones are a hub for everything - from messaging to banking.

But with convenience comes risk.

And scammers are always on the lookout for ways to exploit our devices.

Now, Android users are being warned of a fake app that looks harmless but packs a dangerous punch.

Advert

The new malicious Android software is disguising itself as a 'premium' version of a popular messenger app.

Once downloaded, the pseudo-app tricks people into thinking they are downloading a Telegram Premium application.

However, the malware instead sneakily monitors victims' notifications, text messages, and app activity, all the while stealing sensitive information via Firebase services.

NurPhoto / Contributor / Getty
NurPhoto / Contributor / Getty

The app advertises itself as 'Telegram Premium' to hide its true malware form which is known as FireScam.

If you haven't heard of it, Telegram is a messenger app like WhatsApp and Signal that offers end-to-end encryption for secret chats.

But no official 'premium' version actually exists.

Cybersecurity researchers at Cyfirma discovered that the app is being distributed on phishing websites malware through a GitHub.io-hosted phishing website that mimics RuStore, Russia’s version of the Google Play Store.

While the app isn’t available on the official Google Play Store (thank goodness for that), it could still leave Android owners who are open to sideloading at risk.

The moment it's downloaded, the fake Telegram Premium app asks for extensive permissions as soon as it’s installed, including access to notifications, SMS and phone calls.

Bloomberg / Contributor / Getty
Bloomberg / Contributor / Getty

And when victims open the app, they are reportedly asked to log in with their Telegram credentials.

Unfortunately, this gives hackers everything they need to take over the victim’s Telegram account.

Once hackers have access to the victim's Telegram account, hackers sift through it for any valuable details.

But that's not all.

Once installed, the malware can keep a close eye on any online transactions made via the Android device whilst stealing financial information. It can also observe and intercept data from password managers or auto-filled credentials as well as access your text messages and phone calls.

According to The Register, Cyfirma researchers spotted the new fake app temporarily stores in the Firebase Realtime Database, filtered for valuable information, and then later removed.

"These logs are then exfiltrated to a Firebase database, granting attackers remote access to the captured details without the user's knowledge," Cyfirma's researchers noted.

To stay safe on your Android and Apple devices, make sure to only download apps from trusted sources like the Google Play Store and avoid sideloading apps unless you’re absolutely sure of their legitimacy.

Featured Image Credit: Tatiana Maksimova / sarayut Thaneerat / Getty
Android
Cybersecurity
Malware

Advert

Advert

Advert

  • Security experts warn popular VPN app could drain your bank account as thousands of devices already infected
  • Millions of Android devices hijacked as experts warn 'you're not the target, you're the weapon'
  • FBI send urgent warning to 150,000,000 iPhone users to delete these specific text messages
  • Android users placed on red alert and asked to follow four new rules to stay safe

Choose your content:

4 days ago
18 days ago
25 days ago
a month ago
  • unihertz
    4 days ago

    Unihertz revives Blackberry nostalgia with new smartphone featuring full qwerty keyboard

    What a blast from the past!

    Gadgets
  • Luis Alvarez via Getty
    18 days ago

    Dangerous cancer-causing chemicals found in major headphone devices

    The materials were found in 81 different popular devices

    Gadgets
  • Chip Somodevilla / Staff / Getty
    25 days ago

    Ring Doorbell's Super Bowl ad leaves people destroying their security cameras

    Many have expressed their outrage at the new feature

    Gadgets
  • Brandon Bell / Staff / Getty
    a month ago

    Insane impact Musk's Starlink phone could have on roaming fees for other smartphones

    It could revolutionize the smartphone world

    Gadgets