Photo Showing FBI Site on Screen Magnified With a Lens
© Casimiro PT/Shutterstock.com
No AI-generated content: this article is written and researched by humans
Table of contents

Mobile beta-testing apps are the latest playground for cybercriminals, the FBI announced on Monday, warning that scammers are embedding malicious code into such apps to steal personally identifiable information (PII), gain access to bank accounts, and take over devices.

Mobile beta testing apps provide a controlled environment for developers to test their apps before releasing them. These apps “typically are not subject to mobile operating systems’ review processes,” the FBI said.

Cybercriminals are taking advantage of this lack of review to create fake apps that mimic well-known apps, like cryptocurrency exchanges, then direct their targets to download and install them.

“If a victim downloads one of these fraudulent beta-testing apps masquerading as a legitimate cryptocurrency investment app, the app can extract money from the victim through fake investments,” the FBI said in its public service announcement.

These fake apps often masquerade as legitimate ones by co-opting names, images, or descriptions of popular and trusted applications.

Scammers often use phishing techniques or romance scams to establish contact with their targets before directing them to download these fraudulent apps.

“The FBI is aware of fraud schemes wherein unidentified cyber criminals contact victims on dating and networking apps and direct them to download mobile beta-testing apps, such as cryptocurrency exchanges, that enable theft,” the FBI said.

These apps also create a backdoor that allows scammers to access sensitive information on infected devices.

The FBI’s Cybersecurity Recommendations

The FBI highlighted multiple red flags that may indicate you’ve installed a malicious app. They include faster battery drain, unauthorized app installations, persistent pop-up ads, and spelling or grammatical mistakes in an app.

It is crucial to check the developers of an app before installing it. Also, read reviews and be wary of apps that require excessive permissions that have nothing to do with their functionality or apps that have many downloads and no reviews.

The FBI also warned against using “suspicious looking apps” or sharing personal or financial information with unknown persons.

“Be aware of a sense of urgency threats, such as ‘your account will be closed’ or ‘act now,'” the FBI added. You’ll find the full list of recommendations in the FBI’s announcement.

Read our in-depth guide to phishing to learn how to spot phishing lures and avoid falling for them. We recommend using a premium antivirus solution with real-time protection to spot and block malicious apps.

The FBI encouraged victims to report any fraudulent activities to www.ic3.gov.

For more cybersecurity news, follow us on Twitter, Threads, and Mastodon!

Leave a comment