Google Play Removes 25 Apps Caught Stealing Facebook Credentials From Users: Evina

Cyber-security firm, Evina notes that these 25 apps collectively had over 25 lakh downloads.

Advertisement
By Abhik Sengupta | Updated: 1 July 2020 13:37 IST
Highlights
  • Most of the malicious apps offered wallpapers, video editing tools
  • Google removed these apps earlier in June
  • It is unclear how the apps avoided Google Play Protect detection

Users' Facebook credentials were sent to a remote server

Photo Credit: Evina

Google is said to have removed 25 apps from its Google Play store that were caught stealing Facebook credentials. According to the French cyber-security firm, Evina, these malicious apps collectively had over 25 lakh downloads. The apps reportedly offered different functionalities, though they used the same method for extracting users' credentials. Some of the apps had been available on the Google Play store for over two years before they were finally removed, the cyber-security firm highlighted.

The findings were published in a blog post by Evina and were first reported by ZDNet. Google removed the apps earlier in June after the cyber-security firm reported its potential threat in May this year. Most of these malicious apps offered new wallpapers, while others provided video editing tools and flashlight tools. Apps such as Super Wallpapers Flashlight and Padenatef had over 5 lakh downloads each on Google Play.

Advertisement

How did the apps steal Facebook credentials?

According to Evina, once the user launched the contentious app on their smartphone, the malicious app detected what app a user recently opened and had in the phone's foreground. "If it is a Facebook application, the malware will launch a browser that loads Facebook at the same time. The browser is displayed in the foreground which makes you think that the application launched it," the cyber-security firm explains.

Once the user put their Facebook login details on the phishing page (which features a black bar instead of a blue bar of the original Facebook app), the malicious then sent the credentials to a remote server. This could potentially allow attackers to access all data stored on the Facebook account or even allow them to access other websites where users' have logged in via their Facebook account.

Advertisement

Evina, however, has not clarified how these malicious apps avoided detection by Google's Play Protection service. The full list of these malicious Android apps is listed on Evina's website.

ZDNet citing the cyber-security firm notes that all of the 25 malicious apps were developed by a single threat group.


In 2020, will WhatsApp get the killer feature that every Indian is waiting for? We discussed this on Orbital, our weekly technology podcast, which you can subscribe to via Apple Podcasts or RSS, download the episode, or just hit the play button below.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. 007 First Light Will Run at 60fps on PS5, IO Interactive Confirms
  2. Amazon Great Summer Sale: Gaming Laptops With Up to Rs. 50,000 Discount
  3. Amazon Great Summer Sale 2026: Best Deals on 2-in-1 Laptops
  4. Oppo Find X10 Pro Max Key Specifications Leak
  5. Amazon Great Summer Sale 2026: Best Deals on Vivo and iQOO Smartphones
  6. Samsung Starts Selling Refurbished Galaxy S25 Series and A-Series Phones
  7. Sony Xperia 1 VIII Design Surfaces Online Ahead of May 13 Launch
  8. Oppo Reno 16, Reno 16 Pro Could Arrive in These Colour Options
  9. Google Is Reportedly Testing This Gemini Model Ahead of Google I/O 2026
  10. iOS 26.5 Finally Brings Encrypted RCS Chats Between Android, iPhone
  1. Sony Xperia 1 VIII Design Surfaces Online Leaving Little to the Imagination Ahead of May 13 Launch
  2. 007 First Light Will Run at 60fps on PS5, IO Interactive Confirms
  3. 96 Now Streaming on SunNXT: What You Need to Know About Vijay Sethupathi, Trisha Krishnan Starrer Online?
  4. Tecno Camon Slim Visits US FCC, Other Certification Databases; Could Feature 7,000mAh Battery
  5. Samsung Galaxy S27 Said to Sport BOE Screen as Firm Looks for Secondary Display Suppliers
  6. Oppo Reno 16, Reno 16 Pro Colourways, Price Range Leaked; Tipster Also Hints at New Tablet's Specifications
  7. Off Campus OTT Release Date: When and Where to Watch This New College Drama Online?
  8. Realme 16T 5G Launch Date Announced; Key Specifications, Colourways Revealed
  9. DJI Romo P2, Romo A2 Robot Vacuum Cleaners Launched With 36,000Pa Suction Power, Self-Cleaning Docking Station
  10. Ryan Gosling’s Project Hail Mary Now Available for Rent on Prime Video and Apple TV
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.