Skip to main content

These 11 Google Play apps are stealing your hard-earned cash

play store notifications google
Christian de Looper/Digital Trends
Mobile payment services are gaining popularity, and you should be more careful than ever in choosing which apps to use.

Case in point: Researchers from security PhishLabs recently discovered as many as 11 apps on Google Play posing as clients for popular payment services, which in reality were phishing scams, largely created by a single group of attackers.

The apps act like any other phishing scam — that is, they load websites that look just like pages from payment companies, but when you enter your username and password, that information is handed right over to the attackers. The pages are loaded within the app itself, so you don’t see the URL, but just the page itself. In case you could see the URL, however, the attackers have, in some cases, registered domains that could be easily mistaken as domains from their target companies.

While PhishLabs did not specifically name which apps were targeting users, it did offer a piece of advice: most payments companies, like PayPal, provide links to their apps from their official website. Following these links to download the app is always better than manually searching for an app on Google Play.

“In one case, a targeted company explicitly states on their website that no mobile application exists for their company and that users should be wary of any mobile application using their brand,” said Joshua Shilko, PhishLabs Security Threat Analyst, in a blog post.

A related issue is how long it takes for apps to be removed from Google Play — even if an app is found to be a scam and reported, it can take a number of days for Google to actually remove the app, during which time more people could fall for the scam. Not only that, but if one app is able to bypass Google’s review process and is then removed after being reported, it’s possible that those behind the scam could simply submit another app.

Editors' Recommendations

Christian de Looper
Christian’s interest in technology began as a child in Australia, when he stumbled upon a computer at a garage sale that he…
Google Messages vs. Samsung Messages: Which app should you use?
Google messages versus samsung messages app icons side by side on Galaxy Z Fold 5.

Amid the rise of third-party messaging apps, texting remains a popular means of messaging in the U.S. If you own an Android phone, you've likely used or heard of Google Messages, which is positioned as the default text messaging app for Android. It is the culmination of Google's long history with multiple messaging platforms. Google has pursued smartphone companies to use its Dialer and Messages apps as their default since at least 2017 and now mandates them to use Google Messages as the default messaging app on all devices.

Meanwhile, if you have been a Samsung user in the past, you have likely also known and experienced the Samsung Messages app, which comes preinstalled on all Samsung phones and cannot be uninstalled. This is despite losing its spot as the default messaging app on Samsung Galaxy smartphones.

Read more
The 1Password Android app just got a huge upgrade
The 1Password Android app, side-by-side, showing the light and dark mode.

The 1Password password manager app for Android has just gotten a huge new update, which unlocks the use of passkeys through its app. Held by many as the future of secure authentication, passkeys are the next evolution of the password, and from today, you'll be able to use 1Password to create, manage, and unlock your accounts that use passkey authentication.

1Password is one of the world's most popular password managers, with over 700,000 passwords saved. But it clearly sees that the future is elsewhere, as it has been leading the charge on taking passkeys into the mainstream.

Read more
Google is launching a powerful new AI app for your Android phone
Google Gemini app on Android.

Remember Bard, Google’s answer to ChatGPT? Well, it is now officially called Gemini. Also, all those fancy AI features that previously went by the name Duet AI have been folded under the Gemini branding. In case you haven’t been following up all the AI development flood, the name is derived from the multi-modal large language model of the same name.

To go with the renaming efforts, Google has launched a standalone Gemini app on Android. Moreover, the Gemini experience is also being made available to iPhone users within the Google app on iOS. But wait, there’s more.

Read more