Search

Google Authenticator App Codes Can Be Stolen by Android Malware Cerberus: ThreatFabric

Google has not issued a statements over the reports however, the tech giant might be working on an update.

Advertisement
Highlights
  • The particular malware is likely to be not live yet
  • It possesses the capability of accessing bank details
  • Google is yet to issue a response
Google Authenticator App Codes Can Be Stolen by Android Malware Cerberus: ThreatFabric

Google authenticator app is at the potential risk of breach, report claims

Security analysts claim that a relatively new Android malware can now extract one-time passwords (OTP) generated by Google's authenticator app. The Google Authenticator app was launched in 2010 as an alternative to SMS-based one-time passcodes, and is used for two-factor authentication (2FA) for various Google apps and services such as Gmail and YouTube. Google has not released any statements in response to the claims made by the analysts in the report.

According to ThreatFabric, the team has found an Google Authenticator OTP-stealing capability in recent samples of Cerberus, the Android banking malware that first emerged in June 2019. However, it was also pointed out that the malware is likely to be not live as no advertisements were made in underground forums.

"We believe that this variant of Cerberus is still in the test phase but might be released soon. Having an exhaustive target list including institutions from all over the world, Cerberus is a critical risk for financials offering online banking services," analysts said.

Despite this, the note also pointed out that Cerberus should not be taken lightly, as it includes the capabilities of remote access trojans (RATs), an advance class of malware. This malware can even pose serious threats to online banking services.

To use Google Authenticator, a user is required to download the app from the respective app store of the device. Instead of receiving a text message from the operator as typically seen in 2FA, the app displays six to eight-digits-long unique codes that users must enter while trying logging into an account. Find all the relevant information about the Authenticator app here.

As pointed out in the beginning, Google has not issued statements over the concerns. However, the Alphabet-owned tech giant might likely be working on updates regarding its authenticator app as no cases of breach of this nature were earlier reported. We've reached out to Google for a statement, and will update this space if we hear back.

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

 
Show Full Article
Please wait...
Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo T4R 5G Launched in India With MediaTek Dimensity 7400 SoC
  2. Vodafone Idea (Vi) Rolls Out 5G Services in These Nine Cities
  3. Google Pixel 9a Review: A Really Good Buy
  4. Amazon Freedom Sale 2025 Highlights: Best Deals on Phones, Tablets and More
  5. Amazon Great Freedom Festival Sale: Best Deals on Laptops under Rs. 30K
  6. Flipkart Freedom Sale 2025 to Start Tonight; Smartphone Deals Teased
  7. iQOO Z10 Turbo+, TWS Air 3 Pro Launch Date Confirmed: Specifications
  1. MIT Just Proved Einstein Wrong in the Famous Double-Slit Quantum Experiment
  2. PSR J0922+0638 Pulsar Keeps Glitching Every 550 Days, Scientists Are Intrigued
  3. Starlink’s Unintended Signals Threaten Astronomical Research, Study Finds
  4. DogMan OTT Release Date: When and Where to Watch This American Animated Movie Online?
  5. Love Hurts OTT Release Date: When and Where to Watch it Online?
  6. Xbox Game Pass Hit Nearly $5 Billion in Revenue for the First Time in FY 2025, Microsoft Says
  7. Samsung Tri-Fold Phone to Launch in H2 2025; Galaxy S25 FE Teased to Debut Earlier
  8. Flipkart Freedom Sale 2025 to Start Tonight With Discounts on iPhone 16, Galaxy S24, Nothing Phone 3a, More
  9. Vodafone Idea (Vi) 5G Services Rolling Out in Surat, Meerut, and Seven Other Cities With Special Introductory Offers
  10. Qualcomm Said to be Developing Another High-End Chipset; Could Offer Snapdragon 8 Elite-Level Performance
Gadgets 360 is available in
Download Our Apps
App Store App Store
Available in Hindi
App Store
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.
Trending Products »
Latest Tech News »