vegeta@lemmy.world to Technology@lemmy.worldEnglish · 11 days agoHackers can steal 2FA codes and private messages from Android phonesarstechnica.comexternal-linkmessage-square49fedilinkarrow-up1243arrow-down116cross-posted to: [email protected]
arrow-up1227arrow-down1external-linkHackers can steal 2FA codes and private messages from Android phonesarstechnica.comvegeta@lemmy.world to Technology@lemmy.worldEnglish · 11 days agomessage-square49fedilinkcross-posted to: [email protected]
minus-squarekrooklochurm@lemmy.calinkfedilinkEnglisharrow-up6arrow-down1·edit-210 days agoMan in the middle an app download or find some kind of exploit to inject the code from a website, ta da. I mean, obviously there’s more to it than this but. That’s how these things work. They’re chained.
minus-squareNaibofTabr@infosec.publinkfedilinkEnglisharrow-up2·10 days agoHmm, yes that can happen, but can it happen if you’re downloading directly from the Play store?
minus-squarekrooklochurm@lemmy.calinkfedilinkEnglisharrow-up5·10 days agoThere are reports all the time of play store apps containing malware.
minus-squareNaibofTabr@infosec.publinkfedilinkEnglisharrow-up2·edit-210 days agoI’m sure there are apps that have malware built in yes, but I mean the MITM approach during an app download that you were describing.
minus-squarekrooklochurm@lemmy.calinkfedilinkEnglisharrow-up1·10 days agoOh. Not sure. I was speaking in hypotheticals. I’m sure it’s possible though.
minus-squarereksas@sopuli.xyzlinkfedilinkEnglisharrow-up4·10 days agofirst you download something and it has nothing malicious, then you update it later and then it has something.
Man in the middle an app download or find some kind of exploit to inject the code from a website, ta da.
I mean, obviously there’s more to it than this but.
That’s how these things work. They’re chained.
Hmm, yes that can happen, but can it happen if you’re downloading directly from the Play store?
There are reports all the time of play store apps containing malware.
I’m sure there are apps that have malware built in yes, but I mean the MITM approach during an app download that you were describing.
Oh.
Not sure. I was speaking in hypotheticals. I’m sure it’s possible though.
first you download something and it has nothing malicious, then you update it later and then it has something.